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(57) Abstract 



A user controlled data processing system is provided with a secure 
processing means (5) which has the ability to over ride the control of the 
system hardware by the resident operating system. Advertising display 
data (116) can be securely inserted into the display area (114) of the 
data processing system. Secure processing means (5) also has the ability 
to take over control of input devices (110-113) thereby ensuring that 
the user will interact with the displayed advertising data (116). Graphic 
user interface (GUI) methods utilizing mis system are also described. 
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1 Titie 

2 SECURELY METERING ADVERTISING IN DATA PROCESSING SYSTEMS 
3 

4 Definitions. 
5 

6 1) Electronic Content Information (ECI) may include the following non-inclusive examples: 

7 o computer programs (eg. operating systems, components of operating system, computer games); and/or 

8 " image information (eg video, movies, electronic books, works of art); and/or 

9 e audio (eg music); and/or 

10 e databases; and/or 

11 © Internet web pages; and/or 

12 * advertising. 

13 It may include any software objects described in said WO 97/25675 and/or any digital content information described 

14 in said WO 96/27 155 and/or the present specification. Any ECI may be a software object, in pan at least 
15 

16 2) Display Means. 

17 Hie display means may include the actual device to output images eg. video monitor, TV CRT, LCD, light emitting 

1 8 plastic plasma displays as non-limiting examples. 

19 The display area is the region on the output of said display means that is available for visible image output (eg the 

20 visible display area of a television screen). 

21 The graphics buffer usually refers to one at least memory regions coupled to a UCDPS that store images in digital 

22 format that are usually subsequently converted to a means to drive said display means (eg. an analogue signal to 

23 drive said video monitor). 
24 

25 3) Screen Means is usually the largest logical subset for arranging displayed elements. It may be the only set for 

26 arranging elements, for example, the usual case with a Windows 95 environment. The display area and the screen 

27 may be the same if there is only one screen. 

28 The screen means may contain only one window and said window contents. The screen means usually includes one 

29 at least, of one or more of the following objects, as non-limiting examples: 

30 windows, and/or icons and/or text and/or moving images and/or sound objects and/or static images and/or menu 

31 means and/or pop-up means and/or tool bars and/or background, and/or control means. 

32 Screen contents are collectively referenced as a Screen Object Set (SOS) in this specification. Said screen object set 

33 usually moves as one (if an option) when the screen is moved (for example, the prior art Amiga computer allowed for 

34 multiple screens that could be moved vertically relatively to one another). The present invention describes a method 

35 to move one at least screen in any direction. 

36 Said screen object set may have the same col or palette, however, different screens may have different palettes . 

37 Said screen object set is usually confined to the area of said screen. 

38 Objects within said screen may have different display priorities eg. one may overlay another and or be transparent or 

39 transparent to another, however, an overlying screen will usually obscure an underlying screen, unless said overlying 

40 screen has a transparent (in part at least) background. Objects on an overlying screen will usually obstruct objects on 

41 an underlying screen unless said overlaying screen background and one at least other members of its screen object set 

42 is transparent (in part at least). 

SUBSTITUTE SHEET (RULE 26) 

BNSOOCIO: <WO 9854672A1J_> 



WO 98/54672 PCT/AU98/00403 

1 The present invention allows that the display priorities of one at least screens may be altered to bring it forward or 

2 backward relative to one at least other screens. The present invention also allows that said altered may be achieved 

3 by varying the transparency of at least one screen relative to another, giving the appearance of one screen (usually the 

4 one moving forward in priority) gradually materializing from one at least others and/or the reverse process. 

5 Operations on said screen (eg movement, priority, palettes) may be by controls coupled to said screen and/or other 

6 screens* however, the preferred means uses a control structure that may be used across multiple screens and/or screen 

7 objects, for example the ghost mouse described in this specification. 

9 4) Window means. 

10 The concept of a window on a computer display means is known to the art. It may be re-sizeable and may be coupled 

11 to one at least control means (eg, scroll means, menu means). Said window may have one at least of the control 

12 means and/or objects described for screens. Said objects are usually confined to the boundaries of said windows. Said 

13 window may have any function known to the present art of windows. 
14 

15 5) Bounding Perimeter. In the present specification, screens and/or windows and/or objects that may be displayed, 

16 in part at least, on a UCDPS display area may be defined by a bounding perimeter. The perimeter may be imaginary. 

17 A perimeter defining the area for the display of overlay advertising is one non-limiting example. It preferably may 

18 have any shape and/or area and/or color and/or any other characteristics. It is preferably rectangular or circular or 

19 elliptical. 

20 On a display means with a total visible display area of x pixels wide and y pixels high, said perimeter preferably fit 

21 into a rectangular bounding area with two parallel sides each of length 1 to x pixels and another two parallel sides 

22 each of length 1 to y pixels. 

23 Said sides limited by the number of x pixels may be greater than x pixels and may be moved into and/or taken from 

24 view by a scrolling means. 

25 Said sides limited by the number of y pixels may be greater than y pixels and may brought into and/or taken from 

26 view by a scrolling means. 

27 Said perimeter may be defined by a border (in part at least) that may any thickness less than or equal to x and/or y. 

28 Said perimeter may include multiple objects. 

29 There may be multiple bounding areas and each may include one at least objects. 

30 Within any particular bounding perimeter, one at least objects may have priority over one at least others. 
31 

32 6) The term 'they 1 where the context applies to person(s) may be interpreted as representing one at least males and/or 

33 females. 
34 

35 7) Intel CPU. The use of the term Intel CPU in this specification may be understood as referencing any Intel 80XXX 

36 CPU (eg 80486, Pentium, Pentium II and/or extended and/or future members of this family) and/or functionally 

37 equivalent, in part at least, clones (eg AMD, National Semiconductors) . 
38 

39 8) The term Microsoft Operating System (MOS) may include any one at least Microsoft Corporation Windows 

40 operating systems and/or future versions. Non-limiting examples may include Windows 3.x™, Windows 95™, 

41 Windows 98 ™, Windows NT™ that are registered trademarks of Microsoft Corporation. It may also apply to 

42 Microsoft's Disk Operating System (MSDOS). 
43 
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1 9) The use of the term periodic need not mean a regular period. 

2 

3 End of Definitions. 
4 

5 Background and Summary of the Invention 

6 Technology is rapidly resulting in a convergence of multiple types of electronic devices. Instead of a separate TV* or 

7 'Audio System* or 'Personal Computer' or 'Video Recorder 4 or Telephone' or 'FAX', as non-limiting examples, these 

8 electronic devices are likely to be integrated, in part at least. The present User Controlled Data Processing System (eg 

9 personal computer, set top box, net computer, game machine, palm computer) may evolve into one at least Versatile 
10 Multimedia Processing System (VMPS) that preferably provides consumers with access to all electronic media. 

11 

12 Electronic Content Information (ECI) and/or electronic advertising and/or electronic devices are not presently 

13 harmonized to maximise the benefits of their potential integration, for example: 

14 • Different types of Electronic Content Information are usually optimized for delivery by particular modes. 

15 • Most consumers accept the benefits of advertising as a means of paying for the supply of informaiion content, 

16 however, the means of coupling advertising (including no coupling and/or no advertising) is frequently 

17 dependent on the type of information content. For example, 

18 computer software is primarily supplied on physical media with no advertising 

19 support. 

20 • the Internet distributes a large amount of advertising embedded within web pages, 

21 however, an online connection is usually required to meter use of this material 

22 and/or dynamically supply new material. 

23 • commercial television usually embeds the advertising within the content. 

24 • Electronic means of delivering advertising are not usually efficient at targeting appropriate demographic 

25 groupings. 

26 • Consumers may accept the benefits of advertising, however, they frequently avoid said advertising where 

27 practical (eg. by use of TV remote controls). 

28 ° The means of regulating the supply and/or ensuring payment for the use of the information is usually optimized 

29 towards different means for different types of Electronic Content Information. For example, free to air TV 

30 usually has no direct charges, however, viewers are usually exposed to commercials. Pay television is usually 

31 provided for a monthly fee regardless of consumption, however, this unlimited use is usually restricted to a 

32 particular content provider. Computer software is usually purchased. Internet access may be on a time used basis 

33 or unlimited use for a predetermined fee. Music is usually purchased in the form of CD's and books are not yet 

34 readily available in electronic form. 

35 • An operating system used to control a personal computer is not necessarily the best means for utilizing a 

36 multimedia platform. Some operating systems in popular use are not necessarily the best means of 

37 controlling personal computers either! At the time of writing, the worlds personal computer market is 

38 dominated by personal computers that use Microsoft Corporation operating systems (eg MSDOS, Windows 95, 

39 Windows 98, Windows NT). The rapid escalation of multimedia and the Internet as important components of 

40 information technology has seen Microsoft <and other major companies) attempting to position themselves as 

41 major players in these areas. Although Microsoft may currently be the dominant operating system supplier, their 

42 products may not be optimal solutions for tomorrows integrated digital information systems. Furthermore, it is 

3 
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1 not necessarily in the best interests of other developers and the industry that Microsoft continues to consolidate 

2 its position. 

3 It is a non-limiting objective of this invention to describe, in part at least, a means of harmonizing the means used to 

4 display multimedia information, to deliver ECL, to charge for use of said ECI, and/or the means used to deliver 

5 electronic advertising. Another non-limiting objective is to describe a silicon solution that provides a means to escape 

6 Microsoft's 'sphere of influence 1 , to put it politely. 

7 Along with the integration of multimedia processes the addition of trusted systems (non-limiting examples that may 

8 include secure processing devices and/or secure operating system and/or secure rights management) may change the 

9 means of distributing Electronic Content Information (ECI). Electronic Content information (eg. video, music, 

10 literary text, computer programs, computer games) is preferably delivered as Digital Content Information (DCI). It 

11 may also be delivered as Analogue Content Information (AO), for example, as is usually presently the case with 

12 broadcast commercial television. The ECI is preferably delivered in secure software containers protected by 

13 encryption and/or other means. Distribution and payment of ECI using trusted systems will preferably be based on 

14 the secure atomic metering (eg small units, eg seconds or fractions of a second of use) of usage. Usage is preferably 

15 metered by a Secure Processing Means coupled to a User Controlled Data Processing System. The concept of what is 

16 considered billable information may also change. For example, Web pages, news articles, opinions, letters to the 

17 editor, free to air TV, data books may be non-limiting examples of digital information the consumer is not presently 

18 charged to access, that may be billed in future. This is unlikely to trouble the consumer who preferably will be 

19 accessing this information as just one component of a digital library. Said library preferably provides unlimited use, 

20 in part at least, for a predetermined period of time. The consumer preferably has the option of selecting the display of 

21 advertising material as a means of paying, in part at least, far information consumption. 

22 ECI may include any content information and this may include advertising and/or other promotional content that may 

23 also be referenced as Electronic Advertising Information (EAI) in this specification. At present, the predominant 

24 form of electronic advertising is that embedded within commercial television content. Advertising is also used to 

25 sponsor an increasing number of web pages coupled to the Internet, for example banner advertising. It is a non- 
26 limiting objective of the present invention to describe a means of broadening electronic advertising to subsidise (in 

27 part at least) the use of preferably all types of electronic media (eg. Internet, computer games, electronic books, 

28 databases, video, music, electronic newspapers etc). Advertising may also become more user friendly and targeted to 

29 the needs of specific users. The consumer preferably will have the option of declining advertising, in part at least, and 

30 paying for their consumption of information instead. 
31 

32 Trusted Systems and Pay-for-use software 

33 Trusted systems and pay-for-use software systems are described in pending WO 97/25675 by Griffits and pending 

34 WO 96/27155 by Shear et al. These specifications are incorporated by reference into the present specification and 

35 may be integrated, in part at least, with one at least means described for the present invention. 
36 

37 With trusted systems the right to use digital content information (eg. computer application programs, computer 

38 games, databases, electronic literary text, digital music (eg. CD ROMS), digital video) is preferably separated from 

39 the actual digital content information. For example, digital content information (DCI) is preferably encrypted, in part 

40 at least, such that it may only be used in conjunction with a Secure Processing Means coupled to a user computer (or 

41 any other user controlled data processing system). Said Secure Processing Means preferably requires the presence of 

42 digital control information that describes, in part at least, the conditions of use attached to said DCI and preferably 

43 requires the coupling of one at least rights of access that may be used in conjunction with said conditions of use. 
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1 

2 Said conditions of use may include, for example, restrictions on age groups, countries and/or jurisdictions, period of 

3 use, number of use events permitted, how use of the information is billed, the cost of use etc. Said conditions of use 

4 are preferable securely coupled to said DCI to protect against tampering. The Secure Processing Means is preferably 

5 provided with one at least rights of access, for example, electronic funds, a country identifier, a right that permits 

6 unlimited use of a particular grouping(s) of digital content (eg. all computer games for a month) for a predetermined 

7 period of time. The manipulation of conditions of use and rights of access is preferably achieved using a right 

8 management process that is part of a secure operating system. 
9 

10 The use of trusted systems enables the actual digital content to be distributed using any means (including 

11 unauthorised), however, it is preferably unusable without the appropriate Secure Processing Means and rights of 

12 access. It also provides any content developer with a direct to market opportunity that bypasses existing distribution 

13 structures. -» 
14 

15 It is envisaged that users of digital information will have access to an extensive library of digital content that maybe 

16 sourced from multiple providers. This may be delivered by any means that may include: 

17 physical media (eg DVD or any other high density optical media), 

18 and/or 

19 broadcast (eg. free to air TV, Satellite TV services), 

20 and/or 

21 the Internet (or any other network and/or hypertext network) 

22 and/or 

23 cable (eg cable TV). 
24 

25 The consumption of this information is preferably securely metered and the metered information used, in pan at least, 

26 to determine payment to the various stakeholders in the information. 

27 The following may provide one practical and popular method of distributing and paying for digital information. 

28 The user(s) of a computer are provided with a library of digital content information on high-density optical media. 

29 Said media may be read only or read and write. This is preferably supplied at nominal cost (eg. a few dollars per 

30 disk). The currently preferred optical media is Digital Versatile Disk (DVD) that presently has storage capacities up 

31 to 17 Gigabytes. Far example, the entire library (or part at least) of existing computer application programs 

32 (including computer games) may be distributed on a relatively small number of optical disks (each disk currently 

33 may store the equivalent of approximately 28 CD ROM). The entire library (or part at least) of fiction books may 

34 also be supplied on a relatively small collection of DVD disks (each DVD disk may store approximately 8,500 novels 

35 of 500 pages each without compression techniques). Hie entire library (or pan at least) of music CD's make likewise 

36 be provided to users. This scenario would provide the average user with a library of all (or part at least) computer 

37 programs, music and works of fiction, that subject to meeting the conditions of use, may be accessed almost instantly 

38 (no slow Internet downloads) as required. The user may subscribe to a service that provides optical media updates of 

39 this material. 
40 

41 The logistics of distributing information in this manner are likely to continue to simplify as technology increases 

42 storage capacities. In 10-15 years it may be possible to distribute a library most of the available digital content 

43 information on a couple of holographic crystals. 
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1 

2 The large storage requirements of digital video presently make it impractical to provide each user (or household, 

3 office) with a complete collection of all movies/videos, however, this impediment is likely to disappear with another 

4 generation or two of digital storage means technology. 
5 

6 The use of local area repositories (eg servicing a suburb, block, apartment building, shopping centre, office tower) of 

7 most digital books, music, computer programs and video is now possible or will be in the near term. Convincing the 

8 various vested interests that this is a good thing may be a more challenging task. 
9 

10 It is envisaged users in said local areas may be connected by local area networks (eg. fibreoptic cable using existing 

11 electricity conduits, water pipes and/or sewer pipes) to said local area repository. Said local area repository may 

12 provide a node to the Internet (and/or any equivalent hypertext network and/or any other network means). In addition 

13 to providing access to a library of stored information it may also provide a gateway to the Internet (that may not 

14 depend on existing telephone companies) and a method of local telephony, /my one at least local area repositories 

15 may connect with any one or other, extending the network. The coupling of said node(s) to the Internet may include 

16 cable (conductive and/or optical) and/or satellite and/or microwave. 
17 

18 Virtually any person or company can become a content provider with their success largely dependent on the appeal 

19 of the content and how effectively it is promoted. For example, independent film producers may distribute directly. 

20 The fortunes of the cinema have waxed and waned over the century, however, it is likely that high definition, large 

21 scale home video displays with surround sound will emulate many of the features of existing cinemas, reducing 

22 dg pmnd for their services. The display technology to make this economical is imminent. 
23 

24 It is preferable that advertising maybe used to pay for consumption of electronic information, in part at least. At 

25 present, advertising is usually coupled to a particular item of electronic content information, for example, 

26 commercials linked to a particular free to air TV program and/or ads embedded within WWW pages. It is preferable 

27 that advertising is unlinked from particular program content. It is also preferable that consumers who agree to receive 

28 advertising in exchange for free EIC, view said advertising, or at least, are prevented from removing and/or otherwise 

29 avoiding said advertising where practical. The secure means of priority display described in this specification meet 

30 these criteria, in pan at least. The consumer is preferably rewarded for viewing advertising and/or at least permitting 

31 it to be displayed. This hopefully will deter some consumers at least, from leaving the room and/or blanking the 

32 display means and/or muting the sound, and/or ignoring the advertising and/or any other avoidance measures when 

33 ads are displayed. The introduction of games of chance may be used to enhance consumer participation in 

34 promotional activities. 
35 

36 The prior art of electronic advertising is not usually effective at metering user interaction with said advertising. For 

37 example, TV advertisers are charged usually charged on the basis of TV ratings. This is statistical system based on 

38 historical viewing habits. The ratings infonnation is used to bill advertisers based an anticipated numbers of viewers. 

39 It may be wrong and it is difficult to know what consumers do during advertising periods. In the case of Internet 

40 advertising the metering of consumer exposure to ads (usually banner type ads) is usually by the web server/site. In 

41 static ads it may register a hit based on the fact that a user downloaded the page. Whether it was viewed is usually 

42 indeterminate and/or if it was viewed at least once subsequently from a cache means is usually also unknown. The 

43 use of dynamic advertising wherein* consumers are streamed advertising while connected to one at least sites, may 
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1 improve the situation marginally, however, these systems depend on online connections. The advertising material 

2 may also be tampered with. The present invention seeks to describe a means to meter user interaction offline, 

3 preferably across multiple types of multimedia. This process is preferably secure. 

4 With the consumer likely to require a means to control multiple types of content (that may include advertising 

5 content) information, that may be sourced from multiple means and/or under the control of multiple processes on a 

6 UCDPS, it is preferable that the consumer has a flexible control means. The Ghost Mouse means (GMM) described 

7 in this specification seeks to meet this objective. The means described to intercept mouse and keyboard I/O that may 

8 be part of said GMM is preferably extended to provide secure partitioning and password protection of mass storage 

9 devices. A means to said extend is described. 

10 The invention also seeks to describe an apparatus to optimize in part at least, the means of the present invention and 

11 other specifications incorporated by reference. This may include a secure graphics display module with integrated 

12 secure processing and preferably a secure operating/rights management system. 

13 The Secure Processing Means is preferably able to partition secure system memory processes from secure user 

14 (and/or any other lower level of security) processes. This is preferably achieved using the secure memory partitioning 

15 logic described in the present specification. 

16 The secure processes described for the present invention may also have applications with smart cards, smart watches 

17 etc and these are described, in part at least. 
18 

19 Digital Information Payment Models A system has been outlined for distributing digital information. The cost to 

20 the user of having an extensive library of information is preferably nominal. However, the use of the information is 

21 preferably securely metered by the consumers user controlled data processing system (eg personal computer, 

22 multimedia centre). A report of this usage is preferably provided to a service provider on a predetermined periodic 

23 basis and used to bill the user (who may have been required to pay-in advance). Usage information is preferably also 

24 used to determine distribution of revenue to information producers and their agents and may include the means 

25 described in said WO 97/25675 by Griffits and said WO 96/27155 by Shear et al. 
26 

27 There may be many models for billing the use of metered information and many of these are described in WO 

28 97/25675 by Griffits and said WO 96/27155 by Shear et al, incorporated by reference. Market forces may drive the 

29 delivery of electronic information to a model that provides a plurality of packages, each providing unlimited 

30 consumption for a predetermined period of time. 

31 For example, there may be a literary information package, that for $X per period (that may be a variable period) 

32 provides unlimited use of said informaticm for said period. Said information may include, for example, all novels, 

33 magazines, literary commentary, Internet news groups, technical journals, printed news articles, critiques, data books. 

34 The consumer's access to this information is preferably metered on a time units basis and recorded for each item (or 

35 groups) of information. The revenue received from a particular consumer is preferably distributed on a pro-rata basis 

36 to information producers and/or agents. The value of each component of information may be weighted, however, it is 

37 preferably of equal value per unit of time, per consumer. 

38 The value per unit of time may vary from one consumer to another depending on the ratio of time (and/or event) use 

39 of a particular information component compared to the total time (and/or event) use of all information in said 

40 package. 
41 
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1 Similar packages, for example, may be available for computer games, and/or Internet products, and/or music and/or 

2 video and/or any electronic information. Packages may be compiled that contain any combination and permutation of 

3 electronic information. 

4 The prior art allows for the cost of using a particular item of digital content (eg the price per second of use of a 

5 computer game) to be securely coupled to said content and this is likely to have application with specialised 

6 information. However, it is likely that consumer 

7 information in particular, may be grouped into content type libraries that are made available on an unlimited usage 

8 basis for a predetermined period of time (eg. a month), for a predetermined cost. This method may take the pressure 

9 off consumers from clock watching as they consume information. It may also provide a known budget. This is a 

10 similar principal used for cable TV and Internet access. In this arrangement the value of all information within a 

1 1 particular content library preferably has the same value, regardless of the age of the product, cost of production and 

12 intrinsic value if sold separately. The invention allows for any differential weighting of value of one at least products 

13 over one at least others. 

14 ~ 

15 Just like a successful movie at the cinema, it is likely that the latest and greatest will generate substantially more 

16 revenue while it is 'hot' (if it is 'hot') than lesser and/or older products because it meters substantially more units of 

17 usage. In this arrangement the producers (and/or agents) are rewarded as a proportion of the use of their product 

18 compared to all other products in the content library during the month. For example, it may cost $20 per month to 

19 have unlimited access to any computer game written for the PC. User 1 may play Game A for 10 minutes one month 

20 and not play any other. The amount to be distributed to producers/agents for Game A usage by User 1 may be $20 

21 (100% of usage). User 2 may play Game A for 2 hours and Game B f or 6 hours. In this case producer/agents of 

22 Game A, may only receive $5 (25% of usage) even although Game A was played for a longer period by User 2 than 

23 by Userl. The producer/agents of Game 2 may receive $15 (75% of usage by User 2). User 3 may have paid $20 and 

24 not played any Games, in which case revenue is distributed on a formula preferably derived from metered usage by a 

25 plurality of players. 
26 

27 As a successful product is primarily dependent on how it rates on the 'hit parade' and how long it remains there, it is 

28 expected that there will be intense competition in product development. This is likely to benefit the consumer. 
29 

30 A number of methods have been developed to subsidise the cost of ECI on a UCDPS by displaying advertising 

31 (and/or any other promotional material) on the display area. These usually involve the embedding of advertising 

32 material within the program and/or data of the program. This requires an arrangement between the software producer 

33 or their agent and one or multiple advertisers to sponsor a particular software object or group of software objects. As 

34 most sponsors will need to ensure that their advertisements are actually viewed, a method is required to log the user 

35 access to software objects that include embedded advertising. 

36 One method of metering advertising access when a user is connected to a remote processing means (most commonly 

37 via the Internet) is to log the number of times they access pages containing advertising material. An alternate method 

38 is to require the user to be connected to a remote processing means while executing a program that is supported by 

39 advertising material, mus determining advertising usage. A third means allows the user to download a program and 

40 operate it in an offline manner, however, a utility software object that accompanies the program logs usage, and 

41 usually transparently to the user, sends a report bade to the software producer, agent, or advertiser. There is no way 

42 for the user to determine what other information this program may be sending from their computer. There is also no 

43 tamperproof protection for the advertiser. These methods are also tightly coupled to the supply of particular ECI. 
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One objective of the current invention is to provide a secure means of providing distinct and generic advertising 
facilities on a UCDPS. 

The invention allows for any means that permits advertising material to be displayed on a UCDPS: 
© prior to; and/or 

• during; and/or 
© after, 

the use of one or multiple components of ECI, when advertising is used to subsidise the cost of software object use 
and/or any other function directly and/or indirectly attached to the computer, wherein said means: 

• is secure in pan or whole; and/or 

• provides generic sponsorship of multiple software objects; and/or 

• offsets part or all of the costs of operating part or all of the processes described in PCT AU/97/00010; and/or 

• offsets the costs of operating any other securely protected software objects including objects protected by non- 
secure software processes; and/or secure hardware encryption and/or decryption devices; and/or secure 
encryption and/or decryption devices, that also execute part or all of the software object in a secure manner; 
and/or 

• is functional in an offline and/or online arrangement; and/or 

• is functional in a multitasking and/or multi-user environment. 

The invention also allows for any means of displaying advertising material using any methods that have priority over 
other displayed information and/or any means, in part at least, described in this specification and/or any 
specifications incorporated by reference. 

The invention also allows for any means that: 

• can detect promotional material displayed by any one or multiple means; and/or 

• that overlays, part or all, of this information with alternate information (that may be anything, including 
alternative advertising material); and/or 

e that blanks out part or all of the original information. 

This may include when the information to be overlaid is detected in part or whole automatically (eg a Java 
application program); and or when it is detected in part or whole with the assistance of the user. 

The invention allows for any means that modifies one or multiple original software objects, in any way (including 
deletion), with the altered software object referred to as a Modified Software Object (MSO); such that the MSO is 
compelled to execute in conjunction with a Secure Processing Means that ensures: 

• that any advertising material that is supposed to be displayed to the user, is actually displayed; and/or 

• that directly and/or indirectly can ensure that this information is not deleted and or replaced on the display, in 
part or whole; and/or 

• that may determine (preferably securely) information about the user and may adjust the advertising material 
accordingly; {tnd/or 

• that may determine any particulars about interaction between advertisements) and user(s), preferably in a secure 
mrinhrj, and/or 

• any means that permits information pertaining to advertising on a UCDPS to be relayed (preferably securely) to 
a service provider and/or advertiser (and/or any agent(s). 
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1 The invention allows for any Secure Processing Means , including: 

2 • purely software based executing in a non-secure environment (eg. using the system CPU); and/or 

3 ©any secure decryption means attached directly and/or indirectly to the UCDPS; and/or 

4 o any secure decryption and execution means (eg. as described in said WO 97/25675 by Griffits ) attached directly 

5 and/or indirectly to the UCDPS. 

6 The invention allows for any means that may permit pan or all of any combination of advertising means described in 

7 this application to be disabled (in part at least), temporarily and/or permanently. This may be for any reason, 

8 including: 

9 • permitting the user to pay for the software object, in part at least, on a permanent or temporary basis; and/or 

10 ° only requiring the user to view advertising part of the time and such period may be, in part at least, determined 

11 by the user. 

12 The invention allows for any means that stores pan or all of any information pertaining to user interaction with one 

13 or multiple advertisements within a secure storage device, that may include the Secure Processing Means; and/or any 

14 directly and/or indirectly linked storage means. This may include information stored in a user accessible location that 

15 is encrypted, in pan at least, using any means that in part at least requires: 

16 • secure processes within a Secure Processing Means to create and/or reverse, in pan at least, this information; 

17 and or 

18 • a secure means remote to the UCDPS to perform a similar function. 
19 

20 The invention allows fa* any secure means that in pan at least, embeds advertising material in the normal flow of the 

21 program (that may include calling one or multiple subroutines to perform this task). The advertisements are usually 

22 displayed using similar processes to the body of the software object itself. This usually requires a software producer 

23 (and/or agent) to pre-arrange sponsorship of the software object(s) and would usually commit advertisers to 

24 sponsoring fixed products for a predetermined number of copies. 
25 

26 The invention allows far any means of allowing use of one or multiple software objects in exchange (in pan at least) 

27 for the display of one or multiple advertisements on a displays) attached directly and/or indirectly to the UCDPS; 

28 that directly and/or indirectly activates the Secure Processing Means to (directly and/or indirectly) display one or 

29 multiple advertisements when said one or multiple software objects are executing. 
30 

31 The preferred method of implementing this is any means that includes an advertising generating and/or display 

32 means, preferably secure, ( it may use the Secure Processing Means, in pan at least); 

33 and 

34 any means (preferably secure) to detect, when one or multiple software objects are executing that require activation 

35 (directly and/or indirectly) of said advertising generating and/or display means. 

36 This may include, in part at least, the means used to detect when one or multiple software objects are executing 

37 within the Secure Processing Means as described in said WO 97/25675 by Griffits and/or said WO 96/27155 by 

38 Shear etal. 
39 

40 One method may be to include (preferably) encrypted information within one or multiple software objects that must 

41 interact with the Secure Processing Means. Within this encrypted information is a message(s) informing the Secure 

42 Processing Means (using any means) of its requirements for linked advertising. The advertising may be for display 
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1 prior to and/or during and/or after use of one or multiple software objects. The invention allows that the (preferably) 

2 encrypted message may indicate the type of advertisements and or duration and or any other information. The Secure 

3 Processing Means enters its own functions to ensure that part or all of the advertising is displayed. This is preferably 

4 using secure means. 
5 

6 The invention allows for any means to display advertisements, including having the Secure Processing Means 

7 directly and/or indirectly writing to the normal graphics output means of the UCDPS. Hie invention also allows for 

8 any means to display advertising information using any priority display means, therefore ensuring that some other 

9 process does not alter or overwrite the advertising material. The preferred priority display means is to have the 

10 Secure Processing Means access a graphics buffer under its control that overlays information retrieved from the 

11 normal UCDPS graphics buffers). By allowing the Secure Processing Means to control the display source for each 

12 of these video sources, the Secure Processing Means can ensure that its information has priority. It is preferable that 

13 this linkage is secure thus preventing tampering with the priority display. Ike invention allows for any means of 

14 providing a UCDPS with a secure means of priority display of visual imagery that in part at least may be a 

15 tamperproof means of priority display. 

16 The invention also allows for any means of overlying or modifying (in any way) information displayed by any other 

17 means. This may include advertising material displayed from another source that is overwritten by any means. This 

18 may include any means described in this application or other applications by this inventor. 

19 The preferred means of displaying advertising material is to have the Secure Processing Means able to directly and/or 

20 indirectly inject display information into the display output means. This may use any means. The preferred method 

21 multiplexes normal display information (eg. as generated by a VGA and/or any other PC graphics card) with 

22 information generated in part at least by the Secure Processing Means (directly and/or indirectly). One method of 

23 doing this is to directly and/or indirectly link (using any means) video generation circuit with the Secure Processing 

24 Means. The logic to do this is preferably within the Secure Processing Means 1C. This accesses its own graphics 

25 buffer. The video source from said normal display (in analogue and or digital) format is multiplexed with that 

26 generated by the Secure Processing Means. This process is preferably under the control of functions linked to the 

27 Secure Processing Means. This ensures that Secure Processing Means information has priority. The invention also 

28 allows for any means of integrating the normal display generating logic (in part at least) with mat linked to the 

29 Secure Processing Means. Hie invention allows for any means that in part at least performs a similar function and is 

30 not a secure process (in part at least). The invention also allows for any means that in part at least may take control of 

31 the system bus and write directly and or indirectly to the normal graphics display memory. It is preferable that such a 

32 means saves the overwritten information for subsequent restoration. 
33 

34 The invention also allows for any means that can detect the location on the display means, of advertising information 

35 that is to be overwritten, enabling (directly and/or indirectly) new information (in part at least) to be substituted. 
36 
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1 Hie invention also allows for any means that enables advertising to be configured to the user. This may include any 

2 demographic basis, including gender, nationality, income, age, religion. The preferred method is to include this 

3 information within the Secure Processing Means. Some of this information may be pre-programmed. Other 

4 information may be entered by the user or any other means. It is preferable (particularly when one Secure Processing 

5 Means is accessed by multiple users) for each user to have a password. Therefore, the Secure Processing Means 

6 knows which user is accessing the device and can adjust displayed information to their particular demographic 

7 details. 

9 The invention allows for any means, using part at least of the means described in this application that permits one or 

10 multiple advertisers to support a particular software object. In this case they would usually know the cost of rental for 

11 use of this object and would commit to a particular amount of use per customer. Any other arrangement is allowed 

12 for. 

13 An alternative implementation of the invention allows a generic pool of advertisers to promote a generic pool of 

14 software object. The invention allows for any means of doing this. This provides a scenario where particular software 

15 producers do not need to find specific sponsors. The user has a pool of sponsors (usually with a predetermined 

16 budget per user) and this can be used to offset the cost of any software that the customer wants to use. 

17 One means of doing this uses the process described in pay-as-you-use software rental as described in said WO 

18 97/25675 by Griffits by this applicant. Users may have access to sponsors who commit an amount of funding that 

19 can be used to pay software rental charges in exchange for linked exposure to advertising material. Any means may 

20 be used to log software use. The invention allows for any means of offsetting these charges against advertising. Hie 

21 preferred method loads a predetermined amount of advertising material with a linked amount of electronic credits 

22 (preferably securely). The credit is (preferably securely) decremented against software use. The use of this credit is 

23 usually linked to the display of advertising material. The invention allows for any means of integrating advertising 

24 credits with the use of electronic credits paid for by the user and/or any other credit (and/or any other conditions of 

25 use) means. The preceding method allows generic sponsors to cover use of a variety of user determined software 

26 objects. The invention allows for any means of doing this on a UCDPS. The method as described is compatible with 

27 different software objects having different charges for use. The invention also allows for any means that bundles 

28 software objects and provides unlimited use for a fixed for a period of time and/or number of uses and/or any other 

29 metering of use basis. Hie invention allows for any combination of means. The invention also allows that part at least 

30 of advertising credits may be against a users account with the service provider (or any similar arrangement) rather 

31 than direct credit within the Secure Processing Means. 
32 

33 The invention allows far any means (preferably secure) that permits feedback to one or multiple advertisers about the 

34 various customer responses to their advertising. The preferred method records such responses within the Secure 

35 Processing Means and/or on any external storage means (with the preferred method using a similar process described 

36 in said WO 97/25675 by Griffits for securely storing a record of software usage). This ^formation is preferably 

37 transmitted to the advertiser (directly and/or indirectly) on a periodic basis. This is preferably accompanied by a 

38 secure report of software usage. 

39 The invention allows that any particular advertisement may be used to subsidise (in part at least) one or multiple 

40 specific software objects; and/or may be distributed genetically across multiple software objects. 
41 

42 The invention allows far any means that securely records (that in part at least may include using any Secure 

43 Processing Means) software usage. This may be on any basis, including part or all of the method described in said 
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1 WO 97/25675 by Griffits. The preferred method monitors software use on a time used and/or events basis, with a 

2 generic right of access to multiple software objects as long as there is sufficient prepaid and/or pre-authorised credit 

3 attached directly and or indirectly to the Secure Processing Means. The Secure Processing Means preferably ceases 

4 activity when the credit available is used (or any other predetermined level) and/or any pre-authorised limits are 

5 exceeded. The Secure Processing Means (also referenced as a PPU or ESSPD in said WO 97/25675 by Griffits) is 

6 usually required to periodically produce a preferably secure report on software usage. The Secure Processing Means 

7 preferably cease function if this report is not supplied. 
8 

9 The invention allows for any means to use advertising to subsidise the cost of using software objects. 

10 Non-limiting examples may include: 

1 1 detects the availability of various advertising credits, using these instead of, and/or in conjunction with user credits; 

12 and/or 

13 consumes user credits to execute the software and logs a component thai, will be subsidised by advertising and 

14 subsequently credited to the user's account and or any other means. 
15 

16 The invention allows for any means of securely metering software use and/or advertising interaction with the user. 

17 

18 

19 The invention allows for any means described in this application that in part at least, allows multiple software objects 

20 to execute in a multiprocessor and/or multitasking environment. The preferred method uses the means described in 

21 said WO 97/25675 by Griffits, that permits multiple software objects to execute on a pay-as-you-use basis, with the 

22 methods described in this application readily adapted by those experienced in the art to record usage against available 

23 advertising credits. 
24 

25 The preferred apparatus for implementing part at least of this invention is to integrate a Secure Processing Means into 

26 a custom IC. This is preferably directly and/or indirectly available to software objects executing on the UCDPS. The 

27 Secure Processing Means may be interfaced directly and/or indirectly using any means. This may include a bus 

28 connection (eg. PCI bus, PCMCIA); and/or one or multiple ports (eg. parallel and/or serial); and/or integrated 

29 directly onto the motherboard of the UCDPS; and/or integrated within one or multiple processing units attached 

30 directly and/or indirectly to the UCDPS (including one or multiple system microprocessors) . The Secure Processing 

31 Means (that may provide part or all of the functions of the Secure Processing Means) is preferably capable of 

32 securely decrypting and/or executing software objects (in part at least). It is preferably able to generate video display 

33 information that may overlay and/or replace information displayed as part of the normal processes of the UCDPS. 
34 

35 The software object that is to be executed (and/or used in any other way) preferably includes: 

36 • information about the producer of the software object; and/or 

37 • uniquely identifies the product (eg. ID code); and/or 

38 • conditions of use (that may be any conditions of use described in the art of software protection/distribution; 

39 and/or 

40 • if it requires a distinct right of access; and/or 

41 • if it may be used on a generic right of access basis; and/or 
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1 • if it may have its use offset in pan at least using any one or multiple advertising means, that may include part at 

2 least of those means described in this application. 

3 

4 The Secure Processing Means may include any means that may interpret in part at least, the information within one 

5 or multiple software objects and act accordingly. 

6 Hie Secure Processing Means may update user credits and/or advertiser credits, using any means, including those 

7 described in said WO 97/25675 by Griffits. 
8 

9 The Secure Processing Means preferably has secure access to information (that may be pre-programmed and/or 

10 loaded from any external means) detailing how the display of advertising material may be used to offset in pan at 

1 1 least, the consumption of user credits. Hie invention allows that pan at least of its processes may not be dependent an 

12 any user credits. 
13 

14 The preferred method is to encrypt, in pan at least, advertising material, fhis may be for any reason, including 

15 preventing tampering with the information. This may be linked in any way with any other encrypted information. The 

16 advertising material may have conditions of use directly and/or indirectly linked. These may describe any conditions 

17 affecting the use of the advertising material (and/or for any other purpose), including restriction to age, country (or 

18 any region), occupation, type of software object supported and/or any other basis. It may also include details relating 

19 to the number of times the advertising may be used to suppon one or multiple software objects cm: 

20 • an events; and/or 

21 • a time; and /or 

22 • any other basis; and/or 

23 o a predefined (and/or any other basis) amount of advertising credits that the advertising material is good for. 

24 The use of advertising to offset use of software objects may be a one-off event and/or renewable on any periodic 

25 basis. For example, the conditions of use may indicate that a certain number (that may be any number) of units of 

26 advertising credit are available each period, that may be any period. The preferred embodiment may use any means 

27 to securely stare this information and to use it against software object use. 
28 

29 Alternatively and/or in conjunction, the advertising credits may be saved and transmitted, in pan at least, to the 

30 service provider for crediting to the users account and/or for any other reasons. If applicable, the use of advertising 

31 credits is preferably compared against a secure real-time/date source to determine when a new round of advertising 

32 credits may be activated. 
33 

34 The invention allows that advertising material may be displayed at any time. This may include during system startup; 

35 during periods of inactivity (eg. as pan of screen savers); during program operation. The invention allows for any 

36 means that permits advertising material to be displayed in any section of the display that may be made to move (in 

37 part at least) with the mouse pointer. This may include within a QMM. 
38 

39 The invention allows far any means that on any periodic basis generates a report (preferably securely) for one or 

40 multiple advertisers (and/or any agents), detailing use of software objects; and/or user interaction with advertising 

4 1 material and/or any other information. 
42 
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The invention allows for any means that couples offline use of one at least software objects to a secure metering 
means coupled to one at least UCDPS to securely produce a record of use that may be subsequently permit an 
accounting of said use. This particularly applies when said accounting of use is used to bill advertisers for EIC usage 
on one at least UCDPS. 

Validation Signal Means (VSM) The distribution of ECI on a metered basis may be accompanied by discounts 
based on usage and/or the number of nodes supported by a particular customer. This may apply to information that is 
pay-as-used and particularly to information that is purchased on an 'all you can use' basis for a predetermined period 
of time. For example, a household may pay $20 per month for video access, however, they are unlikely to want to 
pay an additional $20 for each additional access means (for example, a keyboard/display means, a UCDPS accessing 
a household server). A package deal may apply to a household (this may vary depending on the number in the 
household). In another example, a business may receive a discounted rate depending on the number of employees; 
and/or volume and/or value of information consumed. In order to prevenuabuse of this system, for example, one 
household supplying one at least other geographically proximate households (or any other ECI consumers) with ECI 
at the discounted rate, the present invention describes a means to monitor such abuses. In particular it may determine 
the distance one at least said access means is located from a server means by measuring the propagation time an 
electrical and/or optical signal along a conductor linking one at least server means to one at least said access means. 
By using synchronized clocks it may be possible to send a signal that includes information on time the signal was 
sent and have the receiving means note the time the signal is received. Note: light propagates approximately 30 cm in 
one nanosecond. The process preferably may be applied in either direction. The preferred embodiment sends a signal 
and measures the return time. Said sending means preferably knows the delays of any signal processing at the 
riggtnyitinTi, prior to returning the signal. The conduction delay is approximately equal to the return time less 
processing overheads at both ends divided by two. The distance is easily calculated. Access means located beyond 
preferably predetermined distances may be deemed to be unauthorised because of their location (even if they are a 
valid means) The sending means preferably knows the processing delays in the target device and/or within itself. The 
process is preferably tamperproof. The means may also be applied to measuring the delay of a broadcast signal, 
wherein the distance will usually be a straight line between sending and receiving means, compared to a conductor 
means, wherein the cable length may be longer than the distances between sender and receiver. 

The means described in this specification preferably may be applied to one at least User Controlled Data Processing 
System (also referenced as a UCDPS in this specification). Non-limiting examples of said UCDPS may include said 
VMPS, personal computers (eg the PC, Macintosh), set top boxes, game machines (eg, Nintendo 64, Sony 
Playstation), and/or net computers. The term UCDPS may be applied to any electronic device described in the 
previously disclosed patent specification WO 96/27155 by Shear et al. The term UCDPS may also apply to any 
device described as a UCDPS in patent specification WO 97/25675 by the present inventor. 

Summary of the Drawings 

Figure 1 shows a household multimedia centre and a plurality of authorised access nodes. 

Figure 2 shows a method of interfacing an alternate processing means and a system CPU to a common graphics 
buffer. 

Flgure3 shows a method of providing a separate graphics buffer for an alternate processing means and another for 
the system CPU. 
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Figure 4 is a means of blending pixels from multiple sources in an apparatus suitable for overlay graphics. 
Figure 5 is a secure processing means intercepting mouse and keyboard I/O and a means of displaying graphics from 
multiple sources on a display means. 
Figure 6 is a generic arrangement for a Ghost Mouse Means. 

Figure 7 is a simple method of constructing wormholes through a plurality of object layers on a display area. 
Figure 8 is a block diagram demonstrating a means for users to have third parties intercept advertising that requires 
the consumer to interact. Said third party preferably answers the questions for said consumer. 
Figure 9 is a block drawing of a secure advertisement server and advertising protected software object. 
Figure 10 shows a method of using a Personal Security Terminal. 

Detailed Description of the Invention with reference to the Drawings 

The means described in the present specification may interface, in part at least, with secure processes locally coupled 
to one at least UCDPS. Allowance is made that said means may be implemented, in part at least, with less security 

14 (for example, software only based systems rather than one at least, physical^ secure processors) and/or no security. 

15 Furthermore, the means may be implemented, in part at least, in a system with multiple processors (that may be 

16 different processors, in part at least) and/or multiple operating systems, however, the invention allows for their 

17 implementation* in part at least: 

18 • in a single processor system and/or 

19 © in a single operating system environment. 

20 A means is described for overlaying information, preferably with a priority over information originating from one at 

21 least other m^ a™ (eg MOS), and said overlay and/or priority is preferably tamperproof. Ibis particularly applies to 

22 the display of advertising and/or one at least incentive program that are provide, preferably to encourage users to 

23 participate and/or permit said advertising. The use of the advertising may be metered, in part at least, and/or user 

24 responses and/or opinions maybe recorded. Said metered and/or recorded is preferably by secure processes 

25 operational in a UCDPS offline. Said metered and/or recorded is preferably transmitted to authorised parties at 

26 periodic intervals. The invention allows that part at least, of said means described for overlaying information may not 

27 be secure and/or may be performed in part at least by online means. The invention allows for any means of 

28 implementing, in part at least, the means described in this specification. 
29 

30 Validation Signal Means 

31 The ECI consumer's cost of digital information usage when using trusted systems may be discounted to allow for 

32 multiple users. For example, a package deal may apply to a household (this may vary depending on the number in the 

33 household). In another example, a business may receive a discounted rate depending on the number of employees. In 

34 order to prevent abuse of this system, for example, one household supplying one at least other geographically 

35 proximate households (or any other ECI consumers) with ECI at the discounted rate, the present invention describes 

36 a means to monitor such abuses. Reference to Figure 1 shows a household multimedia means 1000. This may be any 

37 means providing ECI, directly and/or indirectly to multiple consumers. Multiple authorised access means (eg 

38 monitors, keyboard, UCDPS, electronic book means etc) 1005, 1010, 1015, may be attached to said household 

39 multimedia means 1000 via a conductive means (preferably optical). The distance between each said access means 

40 and said r""^™^* access means 1000 may be known and/or estimated as shown by 1005a, 1010a and/or 1015a. 

41 The time for an electrical and/or optical signal to propagate along said conductive means may be determined. Said 

42 multimedia centre may send a validation signal to one at least said access means 1005, 1010, 1015 and expects to 

43 receive a return signal within a predetermined interval. Said interval may be programmable. Should said return signal 
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1 be longer than expected (preferably allowing for a predetermined error range) said multimedia centre may determine 

2 that said access means may be in an unauthorised location. For example, access means 1020 may have been coupled 

3 to the house next door using a conductor 1020a that is longer than that permitted, resulting in a longer than accepted 

4 return path. Said 1020 would usually be an authorised unit that is geographically relocated Unauthorised units are 

5 preferably not compatible with the multimedia means 1000. It is preferable that said multimedia means 1000 and said 

6 access means 1005, 1010, 1015, and/or 1020 include a secure means to prevent tampering. It is also preferable that 

7 said access means 1005, 1010, 1015 and/or 1020 expect to receive a validation signal at one at least predetermined 

8 and/or determined on any other basis times. It is also preferable that said access means 1005, 1010, 1015 and/or 1020 

9 originate a security signal of their own and determine the return time. It is preferable that generation of security 

10 signal to and/or from multimedia means 1000 and access means 1005, 1010, 1015 and/or 1020 uses a secure means. 

1 1 The secure means described in this specification are readily adapted by those experienced in the art to meet the 

12 requirements of said Validation Signal Means. Far example, a random number may be generated in multimedia 

13 means 1000 and sent to one at least said access means 1005, 1010, 1015, a&d/or 1020, and a counter started that is 

14 preferably clocked at high speed (eg 1 Gigahertz). When a return signal is detected the counter is stopped and read. 

15 This provides the return signal time plus overheads (eg time to perform any operations at the destination). It is 

16 preferable that the destination (eg 1005) performs an operation on the transmitted information and sends the modified 

17 information bade to said multimedia means 1000. Said multimedia means 1000 may then validate that said operation 

18 is as expected. Said operation preferably takes a standardized time interval. The method may also be applied to 

19 access means that are coupled via non-conductive means (eg radio/microwave). 
20 

21 Overlay, Transparency ands Secure Processing Means 

22 It is one non-limiting objective of the invention to provide a means to overlay information on the display area of a 

23 UCDPS. One application for overlay information may be the display of advertising using Priority Means that are 

24 preferably tamperproof. It is preferable that said overlay is secure, in part at least. It is preferable that said overlay 

25 information cannot be overlaid by other unauthorised information. Said overlay is preferably beyond the control of 

26 the user and/or programs operating outside of a secure processing environment. It is preferable that said advertising is 

27 delivered in one at least secure protected software objects as described in said WO 97/25675 by Griffits and/or one at 

28 least secure containers as described in said WO 96/27155 by Shear et al. An important application for overlay 

29 information is to display advertising. In particular advertising that the user has agreed (implicitly or otherwise) to 

30 display in return for subsidized (in part or whole) use of EEC and/or in return for some other benefit 

31 It will be appreciated by those experienced in the art that one means of securely displaying advertising may be to 

32 provide a Secure Processing Means that may read and/or write to a preferably secure graphics buffer. Said buffer is 

33 preferably not accessible, in part at least, to unauthorised processes outside said Secure Processing Means. The 

34 display of graphic buffer data preferably takes priority over graphics buffer information from other sources, for 

35 example, the video memory of a PC. Said priority is preferably selectable on a pixel by pixel basis, in pan at least It 

36 is preferable that pixels from the overlay graphics buffer may be mixed with those from, one at least other sources, in 

37 part at least. Said mixing preferably provides a transparency means, wherein said overlay transparency preferably 

38 may vary from 0% (no transparency) to 100% (no overlay) and one at least values in between. It is also preferable 

39 that the overlay display may be varied in size. This may use known art windows resizing means that usually crop part 

40 of the displayed area to fit the window. The preferred means supplies overlay graphics buffer information in to an 

41 image shrinking (and/or enlarging) means. This may be a program that resizes the image within the graphics buffer. 

42 It is preferably that a hardware means resizes the overlay display in real time as it is displayed. These processes are 
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1 known to the art. It is also preferable that one at least display means that are overlaid (eg, the display area 

2 representing a PC Windows environment) maybe resized, preferably dynamically using a hardware means. 
3 

4 One means to implement the overlay system of the invention is now described. Said system is referenced as a Video 

5 Graphics Overlay Module (VGOPM). It may incorporate any of the means described in said WO 97/25675 by 

6 Griffits and/or said WO 96/27155 by Shear et al. The VGOPM may also provide security for the display of any type 

7 of visual information, for example electronic books and similar. It also facilitates the implementation of a Ghost 

8 Mouse, described later, and provides novel and flexible means of overlaying important messages during normal 

9 applications processing and/or alternate processing means (eg a Secure Processing Means). 
10 

11 Figure 2 shows one means of generating overlay information. Video logic 1, retrieves information from a graphics 

12 buffer 2 converting it from binary to a format that may drive a display means. This is usually an analogue signal with 

13 many existing video monitors. The system CPU, eg an Intel CPU usually under the control of an operating system 

14 that may not be secure, for example, a Microsoft Operating System, normally transfers graphics information to the 

15 graphics buffer 2. The invention allows any multiplexing means 3 to permit any combination of alternate processing 

16 means 5 (eg a secure processing device as described in said WO 97/25675 by Griffits) to communicate with said 

17 graphics buffer 2. Said processing means 5 preferably may modify information within said graphics buffer 2. The 

18 alternate processing means 5 may have its own peripherals and/or memory 7. The invention allows for any means 

19 for the system CPU and the alternate processing means to communicate with one another. The preferred method uses 

20 dual port memory as described in said WO 97/25675 by Griffits and/or allows the alternate processing means to 

21 access system memory by DMA. 

22 Hie means to communicate commands and data between a first operating system means that is preferably part of a 

23 secure processing environment, and one at least, usually unsecure, second processing means, eg a MOS environment, 

24 are described in said WO 97/25675 by Griffits and said WO 96/27 155 by Shear et al. 

25 One potential disadvantage of the preceding arrangement is that the alternate processing module may need to trade 

26 the information it has replaced in the graphics buffer 2, to restore the underlying information when necessary. For 

27 example, if an overlay area is moved around by the user and/or any other means, the original information (eg 

28 Windows display) usually needs to be restored. The other potential problem is that the system CPU(s) may also be 

29 updating graphic buffer locations in competition with alternate processing means 5. It is preferable that multiple 

30 processing units (eg 4 and 5) each write and/or read to their own graphics buffers, in part at least. It is preferable that 

31 said alternate processing means may continue to access either graphics buffer. This may allow each processing means 

32 to update its own display information without altering that of one at least others. 

33 The reader is referred to Figure 3 of the drawings. Alternate processing means 5, is preferably allocated its own 

34 graphics buffer 20. The system CPU(s) may also have access to said graphics buffer 20 (preferably on a multiplexed 

35 arrangement). The system CPU 2 preferably uses graphics buffer 2. The alternate processor 5 preferably has access to 

36 graphics buffer 2. The video logic 1 preferably fetches information from both of these and uses internal logic to 

37 determine which graphics buffer (or both if transparency is used) is the source for a particular pixel (or pixel 

38 grouping). Those experienced in the art will appreciate that any number (given practical constraints) of processing 

39 means and/or graphics buffers may be similarly configured with any combination of accesses to (Hie at least graphics 

40 buffers from any one at least processing means. 
41 

42 One method of selecting which graphics buffer is to provide a particular pixel is by the use of a pixel mask means. 

43 The mask buffer may be discrete (eg another buffer that is accessed with each graphics buffer) and/or extensions of 
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1 the bit map used to represent pixels in one at least graphic buffer. The invention allows for any means of pixel 

2 switching and selection. This may include means that are inherent and/or depend on the value of data within various 

3 graphics buffers, for example, the color blade in the graphic buffer 2 may indicate transparency such that the overlay 

4 screen shows wherever there is a black pixel on the system display. The reverse may be the usual case. One at least 

5 processing means preferably has access to the graphics buffers of one at least other processing means. UnSecure 

6 Processing Means preferably do not have unauthorised access to secure graphic buffers. Figure 4 shows a method of 

7 selecting which graphics buffer will contribute to a particular displayed pixel. Information sourced from graphics 

8 buffers 2 and 20 may be multiplexed by 26 that may select the source for a particular pixel. In this instance, the 

9 selection is preferably determined by a mask field 25 that is an extension of graphic buffer 20. It may, in part at least, 

10 be part of graphic buffer 2 and/or (Hie or multiple other buffers. The logic block 30 may be used when graphics from 

1 1 multiple sources are blended, for example, to perform transparency operations. It may perform multiplication and/or 

12 division and/or any other logic operations that may scale the data from 2 and 20 up/and/or down and then average 

13 and/or any other mathematical operation the pixel values. The means^to perform hardware and/or software 

14 transparency are known to the art. A means (not shown) is preferably included to dynamically resize one at least 

15 screens and/or windows and/or objects. For example during a system reboot, it is preferable that advertising may be 

16 displayed on the screen. To enable the user to also view boot parameters and/or copyright notices, the boot display 

17 and overlay display are preferably shrunk. Said overlay display may or may not overlap said boot display, in pan at 

18 least 
19 

20 It will be appreciated by those experienced in the art that the preceding embodiment may be constructed as a PC 

21 compatible VGA card. 

22 The method described with reference to figure 2,3 and 4 effectively captures display information from one or 

23 multiple system processors that may be operating under one at least operating systems and preferable transparently to 

24 said operating system(s) overlays additional graphics information. Another method of achieving this maybe to 

25 include a graphics buffer within the display means (eg video monitor). This may be configured to display information 

26 at predetermined times that are preferably capable of modification, preferably by one at least signals sent from its 

27 coupled UCDPS. For example, said monitor graphics buffer may be activated by a reset signal and/or a particular bit 

28 pattern(s) in the incoming video information. The information within said monitor graphics buffer, preferably may be 

29 updated. For example, information may be transferred within the vertical blanking period. An alternative is to 

30 interpose an overlay graphics means between video output of a UCDPS, for example, the VGA plug of a PC and the 

31 input to one at least display means. For example, a user may wish to keep their current video card and have access to 

32 the means of the present invention. One method would enable the user to connect the output of one at least video 

33 cards to a second board that included, for example, a Secure Processing Means and secure graphic means. The 

34 incoming video may be digitised and mixed digitally with the video from said secure graphics buffer. Alternatively, 

35 the incoming analogue video may be switched, for example, with an analogue switch, with the analogue output from 

36 said secure graphics buffer. 

37 ; 

38 Another method of displaying overlay information securely that may have a plurality of other applications, may be to 

39 use the one at least system CPU to perform functions, preferably securely, that are preferably transparent and 

40 preferably inaccessible, in part at least, to the MOS executing on the same CPU. For example, a transparent interrupt 

41 structure is described for CPU that permits the CPU to enter an alternative mode, to example as described in US 

42 Patent 5274834. This would require a special CPU and is not presently a feature of Intel CPUs. 
43 
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1 The preferred method of controlling screens, windows and objects is by the use of one at least control means 

2 preferably implemented as an overlay means and referenced in this specification as a Ghost Mouse Means or 

3 GMM. 
4 

5 User Interfacing to Overlay and Secure Processing Means 

6 The user of a UCDPS may interface to the alternate processing means, that is preferably a Secure Processing Means, 

7 using any of the usual I/O means coupled to a UCDPS. The present invention and specifications incorporated by 

8 reference describe a plurality of ways for, one at least, standard operating systems (eg MOS) to interface with a 

9 secure processing environment. These methods may require modifications to said standard operating system and/or 

10 one at least patches. The means of said WO 97/25675 by Griffits also describes Protected Software Objects that may 

1 1 automatically determine the presence of a secure environment and communicate with it without any code external to 

12 said PSO on the non-secure side of the system. 

13 A non-limiting objective of the present invention is to provide multimedia processing means that are or may be 

14 directed towards a MOS FREE ENVIRONMENT and it is preferable that I/O processing between user and secure 

15 processes is not dependent on the System OS eg MOS, in pan at least. The preferred embodiment has the secure 

16 processing and/or other alternate processing means intercept and preferably pre-process I/O means, in part at least. 

17 User inputs (nan-limiting examples that may include, mouse and/or any other screen pointer means, joystick, 

18 keyboard, light pen, voice input, etc) that are not targeted at the system operating systern(s) eg MOS are preferably 

19 not passed to said system OS(s). They are preferably processed by said secure and/or alternate means. Those I/O 

20 means that are intended for the system OS(s) may be pre-processed prior to being passed to the said system OS(s). 
21 

22 Figure 5 shows a block diagram of one embodiment that may be used to provide the advertising means and/or Secure 

23 Processing Means and/or I/O intercept means of the present invention. It may be expanded to include any other 

24 functions. It may be referenced as an Integrated Secure Core Resource Execution and Allocation Means (I- 

25 SCREAM) and is preferably manufactured as a module that plugs into the PCI (or any other) bus of a PC or as a 

26 standalone multimedia system. It preferably also provides the VGA functions for a PC. It preferably may use its own 

27 processing means to emulate, in part at least, a graphics accelerator means for the PC. The embodiment may be 

28 adapted to couple by any other means to said PC. The embodiment may also be adapted to couple to any UCDPS. 

29 The embodiment may be adapted to include part or all of the logic of a multimedia system. The invention allows that 

30 the functions described for secure and/or alternate processing means may be performed by one at least system 

31 CPU(s), in part at least. The reverse may also apply, in part at leasL 

32 The use of the term Secure Processing Means may also be implied to represent the option of one at least alternate 

33 processing means that may be secure, in pan at least The term Secure Processing Means may also be replaced with 

34 the term non-Secure Processing Means. 

35 The term system operating system may refer to one at least operating systems executed by said Intel CPU. 

36 Presently the prevalent system operating system(s) is one at least Microsoft Operating Systems (MOS). The use of 

37 the term MOS may be interpreted as referencing said System Operating System(s) and may also be interpreted as 

38 referencing any system operating system(s). 
39 

40 It is preferable that the Secure Processing Means (that may also be constructed as a non-Secure Processing Means) 5 

41 intercepts one at least I/O means. For Example, a socket (or plug) may be provided into which the user may plug 

42 their mouse 110 and/or keyboard 111. Additional sockets may be provide for other input means (eg, Joystick, Light 

43 Pen, any other screen pointer means, as non-limiting examples) and the means described for the mouse/keyboard 
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1 may readily be adapted to said other input means by those experienced in the art. It is preferable that the UCDPS 

2 interface with the Internet 1 12 is intercepted, in part at least, by said Secure Processing Means 5 <and/or one at least 

3 other processing means). Said secure processing 5 preferably intercepts calls to and/or from one at least other 113 I/O 

4 means, non^imiting examples that may include parallel interface, serial interface, floppy disk, hard drive, CD ROM, 

5 DVD, USB, Firewire, Video Camera, Free to air TV, Cable TV, Audio, Public Switched Telephone Network. 
6 

7 A display area 1 14 is shown that includes information 115 contributed by the system CPU 4 (preferably by writing to 

8 graphics buffer 2) and information 1 16,1 17 contributed by the Secure Processing Means 5 (preferably by writing to 

9 graphics buffer 20). Video logic 1 preferably selects the source of each pixel and converts it to a format suitable for 

10 use with a display means. Video logic 1 may include one at least functions, non-limiting examples that may include, 

11 pixel selection, manipulation and/or use of pixel masks, transparency, hardware/software zoom, programmable 

12 pointers that may be used to adjust the displayed position of various objects etc. Information 115 may represent a 

13 Microsoft Windows Screen, as a non-limiting example, stored in the PC ^aphics buffer 2. The system operating 

14 system preferably is not aware of any overlaying information (eg 116,118,117), in part at least, and/or preferably 

15 cannot interfere with any overlaying information, in part at ieasL Area 116 may represent an advertisement written to 

16 the overlay display means 20 by Secure Processing Means 5. Area 117 may represent the output of an Internet 

17 Browser that is executed by said Secure Processing Means 5 and/or one at least other alternate processing means (not 

18 shown), that may be secure, in part at least, and output to the overlay graphics buffer 20. Said other alternate 

19 processing means preferably interface with and/or is controlled by said Secure Processing Means. The area 118 

20 outlined by a broken line may represent an area of transparency, for example it may be a ghost mouse means. The 

21 Ghost Mouse graphics) is preferably written to graphics buffer 20 by said Secure Processing Means (and/or one at 

22 least alternate processing means) and overlaid on the Windows image, however, it is preferably able to have its 

23 transparency level adjusted* If the transparency is greater than zero (0= no transparency) the pixel content of 

24 underlying Window 115 pixel may contribute to the displayed image. If transparency were set to 100%, only 

25 Window 1 15 pixel(s) would usually be visible. An Image Manager Means is preferably provided that is preferably 

26 aware of the contributing sources of images (preferably all) in a display area. It is preferable that said Secure 

27 Processing Means 5 (and/or its preferably secure operating system and/or rights management system) includes said 

28 Image Manager Means. It is preferable that Secure Processing Means S may read/and or write to PC Graphics Buffer 

29 2. It is also preferable that there is a means for the Secure Processing Means 5 to monitor 143 the System CPU bus 

30 140. For example there may be a bus monitor means 141 that may be able to trap one at least addresses. For 

31 example, there may be a preferably programmable PC I/O trap 142 that on detection of one at least accesses to one at 

32 least addresses within the System CPU I/O space initiates further action. For example, the Secure Processing Means 

33 may halt the system CPU via control lines 135 while it emulates an IAD function (eg. a register function) as a non- 
34 limiting example. Said control line may be used to interrupt the system CPU 4, eg to simulate a peripheral device. 

35 Said Secure Processing Means 5 may preferably also access system memory 130 for any reason, for example, to 

36 modify interrupt routines, interrupts, I/O functions, mouse pointers, keyboard input as non-limiting examples. 

37 Said Secure Processing Means preferably may inhibit system CPU cache entries for one at least addresses for one at 

38 least reasons, non-limiting examples that may include: 

39 ensuring that routines and or data may be modified by the Secure Processing Means and be applied reliably by said 

40 system CPU 4, and/or that information written by system CPU 4 is immediately available to secure processor S. 
41 

42 In the present embodiment, one at least I/O means may need to function across multiple screens and/or operating 

43 systems and/or processors and a means is preferably provided to allow this. For example, the mouse pointer means 
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1 1 19 is preferably interfacing with the Windows environment 1 15 when it overlays areas where said 1 15 is visible. 

2 However, when said mouse pointer means moves to an area of overlay information as indicated by 121, it is 

3 preferable that said pointer is visible and interfaces to one at least overlay area, in part at leasL If the mouse 

4 movements were directly transferred to the System GPU operating system, eg one at least Microsoft Operating 

5 System (MOS), said MOS may control its movement and when located to an overlay area may be covered by said 

6 overlay. Additionally, when the pointer was 'clicked' it may activate a Windows object 

7 The pointer is preferably controlled by said Secure Processing Means 5, wherein, said pointer may be made to 

8 behave appropriately for: 

9 • Windows area 115 when overlying said area 115 (said secure processor 5 preferably knows when this is the 

10 case); and 

11 • Other areas eg 116, 117, when overlaying said other areas (said secure processor 5 preferably knows when this 

12 is the case). 

13 The invention allows for any Pointer Control Means (PCM) that preferably ensures a mouse pointer and/or coupled 

14 and/or uncoupled mobile control structure (eg ghost mouse) are: ^ 

15 • visible at the correct times; and/or 

16 ° activate the correct objects; and/or 

17 • display the appropriate image far their position (eg. the arrow may become a text when located within a word 

18 processor). 

19 It is preferable that control objects displayed within a Ghost Mouse Means are varied to suit the underlying screen 

20 and/or window and/or objects. 
21 

22 The Secure Processing Means 5 preferably intercepts one at least mouse movements and/or mouse click signals. This 

23 may be referenced as a Mouse Intercept Means. One method is for said Secure Processing Means to control part or 

24 all pointer movement and/or mouse clicks (and/or equivalent) and read and/or write directly to mouse registers, 

25 pointers, buffers etc of the MOS. This method may also be used to stop MOS pointer movement when required 

26 and/or to park the pointer in convenient location and/or to temporarily stop display of the MOS pointer and/or to 

27 locate the restore the pointer to an appropriate location. Video logic 1 may be adapted to enable the MOS pointer to 

28 be blanked. 

29 One method is to pass part or all mouse movements to said MOS and although the mouse pointer may move 

30 anywhere on the MOS screen 1 15, the MOS pointer is preferably not be visible when behind an overlay area. The 

3 1 Secure Processing Means preferably displays another mouse pointer to ensure its visibility when within one at least 

32 overlay areas, eg location 121. When the pointer is located in a transparent area eg 1 18 both pointers are displayed, 

33 however, as both pointers preferable occupy the same display area co-ordinates, they are seen as one. 

34 Pointer position is usually a passive display and it may be replicated by multiple operating systems as long as the co- 

35 ordinates are the same (unless a plurality of pointer images is wanted). The known art does describe some actions 

36 that may occur when a pointer is located in one position for a predetermined time, for example, the display of a 

37 balloon of text to indicate the meaning of an underlying icon and/or a variation in the displayed image of an object(s). 

38 This may result in a pointer located within an underlying screen causing changes to said screen, even although it may 

39 have been moved to that location by mouse movement in the overlying screen. This function is preferably disabled 

40 when the pointer moves to overlay areas. An alternative may be to restrict MOS writing to graphics buffer 2 when the 

41 mouse is in overlay territory and/or overlay territory is active. 
42 
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1 U is preferable that when the pointer is located in a MOS area 115 one at least mouse clicks is passed to the MOS 

2 pointer routines (an exception may be with the use of a Ghost Mouse as described later). When the pointer means is 

3 located in an overlay area eg 116, 1 17, one at least mouse clicks are preferably passed to the appropriate routines 

4 within said Secure Processing Means. 

5 Those experienced in the art will be able to adapt the mouse means to similar means eg Joystick, light pen, touch 

6 screen, voice commands etc. 
7 

8 In the case of keyboard entries, it is preferable that keystrokes are transferred to the presently active Window and/or 

9 object and/or screen. If multiple means are active, keystrokes are preferably passed to the operating system 
10 controlling the area presently encompassing the visible pointer means. 

11 

12 The embodiment as described is intended to synthesise, in part at least, the PC environment expected by a MOS 

13 executing with an Intel CPU, without requiring any modifications and/or jMUches to said MOS and/or any other 

14 programs executing under said Intel CPU. This arrangement preferably enables a module to be plugged into a PC and 

15 provide the functions described for said I-Scream transparently, in pan at least, to the MOS. The method may be 

16 adapted to any UCDPS and/or system CPU and/or operating system. 
17 

18 Those experienced in the art will appreciate that modifications and/or patches to the system OS (eg MOS) may assist 

19 and/or replace, in part at least, the means used by said I-Soeam. 
20 

21 Ghost Mouse Means (GMM) 

22 One non-limiting objective of the present invention is to provide a Mobile Pointer Coupled GUI means (that may 

23 also be referenced as a Ghost Mouse means in this specification). 
24 

25 When contrasted to methods that require the typing of text based commands the use of a display pointing means in 

26 conjunction with control images presented on a display means has simplified the use of UCDPS for many users. 

27 These control images may be genericaily referenced, in part at least, as a Graphical User Interface (GUI). 
28 

29 The components of a GUI are known to those experienced in the an and the present invention allows for any image 

30 objects used by the known an (eg Windows 95, Macintosh computers). Said control objects may include one at least 

3 1 control functions described in this specification. Non-limiting examples of control objects may include icons, menus 

32 (that may include pull down menus), graphical tools (eg scissors image to represent a image cutting tool, paint 

33 brushes etc), scroll bars, windows, window sizing objects, clocks, mouse pointer (that may be any shape) power 

34 indicators, speaker controls, display controls, etc. 
35 

36 Said display pointing means is usually implemented in conjunction with a mouse (or any variation eg, trackball, 

37 touch pad, joystick etc). It may also use touch screens, light pens, remote control (eg I/R or radio), audio controls, 

38 key strokes, or any other means of interacting with control images presented to the user on a computer display means . 
39 

40 The convenience provided by a GUI may be associated with a number of limitations that may include, one at least, of 

41 the following: 

42 • The provision of display resources for control objects may reduce display real estate available for 

43 applications. This may be a particular problem when multiple windows are open. 
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1 o The known art usually locates control objects at the periphery of work areas (eg. a window) and/or 

2 coupled to another work area. This may entail significant pointer movement on a repeated basis to one 

3 at least locations. Said movement is usually a result of mechanical movement of a physical means (eg. 

4 a mouse) by the user. This repetitive physical motion may be particularly inefficient for the pointer 

5 means built into laptop computers. 
6 

7 One objective of said Ghost Mouse means is to organise one at least control objects (preferably as one at least 

8 graphical and/or text images) in a location(s) that is preferably adjacent (and/or in any other way closely coupled) to 

9 one at least: 

10 pointer means (for example, the mouse pointer) and/or one at least cursor means (or equivalent). 

1 1 The invention allows that one at least control objects may be arranged in any other, one at least, locations relative to 

12 said pointer and/or cursor. 
13 

14 Part at least of said control objects are preferably arranged such that their location on the display area changes as said 

15 pointer and/or cursor means is moved around said display means. Said changes in location are preferably a function 

16 of the variation in x and/or y co-ordinates of said pointer and/or cursor means. Said control object(s) preferably 

17 maintains their positional relationship with said pointer and/or cursor. 
18 

19 Said control objects are preferably collated into one at least areas that may be any shape. Said area(s) may be defined 

20 by any means that preferably includes one at least of the following: 

21 • an outline characterised by solid or dashed lines and/or curves that may be one at least colors that preferably 

22 differentiate it from the other display information (in particular information external to said Ghost Mouse); 

23 • a background characterised by erne at least colors that preferably differentiate it from other displayed information 

24 (in particular information external to said Ghost Mouse). 

25 Said area(s), in part at least, may be within the mouse pointer image displayed on the display means. Said mouse 

26 pointer image may be modified to accommodate this information. Said area(s) may be closely coupled to said mouse 

27 pointer image. Said area(s) may be presented in any other arrangement and may or may not be coupled to said mouse 

28 pointer. 
29 

30 Said control objects and/or background and/or outline and/or any other objects (text and/or graphics and/or virtual 

3 1 objects), in part at least, may constitute the Ghost Mouse means of the present invention. 
32 

33 Said Ghost Mouse means preferably can be manipulated around the x and y co-ordinates of the display means, in part 

34 at least, under the control of the user. As such the Ghost Mouse may (preferably temporarily) obscure, in part at least, 

35 other information being displayed and/or intended for display. Any one or multiple parts of said Ghost Mouse Means 

36 is preferably capable of being displayed with multiple levels of transparency. If part at least, of the pixels used to 

37 display said ghost mouse are set to a level of 0% transparency, then said pixels would usually display that part of said 

38 ghost mouse as a solid object and that part of the ghost mouse would overlay any underlying images. If part at least, 

39 of the pixels used to display said ghost mouse are set to 100% transparency, then said pixels would usually not 

40 display any information pertaining to that part of said ghost mouse and information not part of said ghost mouse 

41 would effectively overlay said ghost mouse. If part at least of the pixels are set to transparency greater than 0% and 

42 less than 100%, then said pixels would usually display information that in part represents said ghost mouse and in 

43 part represents information not part of said ghost mouse (eg. an applications) program). The level of transparency is 
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1 preferably user selectable/programmable. The user preferably can make the mouse disappear, co-exist with other 

2 information and/or overlay as a solid object The display overlay and transparency means previously described may 

3 be used to implement this function. 
4 

5 Hie preferred method of creating transparent pixels is to average the color information of ghost mouse pixels with 

6 pixels representing other information and present than as a composite value suitably weighted to match the desired 

7 level of transparency. This preferably uses the means described in this specification using algorithms implemented in 

8 hardware. The invention allows that these algorithms may be implemented, in part at least, using any means and this 

9 may include software methods. The ghost mouse may be implemented as a solid overlay without a transparent 

10 function. An alternative (and/or conjunctive) method of displaying ghost mouse pixels and pixels representing other 

11 information within, part at least, of the area defined by said ghost mouse is by displaying some pixels representing 

12 100% ghost mouse information and same pixels representing 100% said other information. For example every 

13 second pixel may be a ghost mouse pixel. The invention allows for any proportion of ghost mouse pixels in any 

14 arrangement and said arrangement may vary in any way. Said 100% may be replaced in pan at least with any level of 

15 . transparency. 
16 

17 The means described for transparency applying to the Ghost Mouse Means may be applied, in pan at least, to any 

18 other objects, in particular, advertising and web page display. 
19 

20 As described elsewhere in this specification, objects displayed using the present invention may exist in one at least 

21 screens and when a plurality of screens are present, one screen may have display priority of one at least others. Each 

22 screen may be comprised of one at least windows and/or any other objects and one at least window and/or other 

23 objects may have display priority over one at least other windows and/or said other objects. One at least windows 

24 may include one at least window objects and one at least window objects may have priority over one at least other 

25 said window objects. Because the Ghost Mouse preferably provides control means to multiple windows and/or 

26 screens, it is preferable that it is displayed on top of all other display objects. However, the invention allows that it 

27 may have a lower priority than one at least screens and this may be absolute (ie. not visible) and/or be visible on a 

28 transparent basis. For a particular screen, said ghost mouse may have lower priority cxxnpared with one at least 

29 windows and this may be absolute (ie. not visible) and/or be visible on a transparent basis. For a particular window, 

30 said ghost mouse may have lower priority compared with one at least window objects and this may be absolute (ie. 

31 not visible) and/or be visible on a transparent basis. The effect of this may be that as the ghost mouse is moved 

32 around the display means it disappears, in pan at least, behind one at least screens and/or windows and/or objects . 

33 : 

34 The ghost mouse is preferably implemented using the overlay means previously described as this permits the overlay 

35 area representing said Ghost Mouse to move around a display area without a requirement to keep track of the 

36 underlying information. The movement of said Ghost Mouse is preferably in response to the movement of a mouse 

37 means (or equivalent, eg trackball, Joystick, any pointing means etc). The activation of objects within and/or 

38 otherwise coupled to said Ghost Mouse is preferably in response to selection (eg clicking) one at least buttons 

39 coupled to said mouse means and/or equivalent. Said movement and/or activation may be in response, in pan at least, 

40 to one at least other means, for example, selection of one at least keys on a keyboard means coupled to a UCDPS. 

41 The Mouse Intercept Means previously described may be adapted to provide for the Ghost Mouse Means. Far 

42 example, if the mouse pointer presently overlays a MOS area 1 15 of Figure S, and the Ghost Mouse is activated <eg 

43 by clicking the RMB) the secure processor 5 preferably ceases passing mouse movement and mouse click 

25 
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1 information to MOS. It preferably sends MOS information to move the pointer if one at least operation activated with 

2 the GMM results in movement of the pointer. If the GMM commands apply to the MOS environment, the Secure 

3 Processing Means 5 may try to synthesise their effect through a combination of: 

4 system memory access and/or emulating mouse pointer movement and/or clicking (preferably without display said 

5 mouse pointer movement); 

6 and/or 

7 modifying and/or patching the MOS to recognize commands passed to it (eg via dual port memory 127/128), 

8 as non-limiting examples. 

9 When the Ghost Mouse is to command means operating, in pan at least, under the Secure Processing Means 5, said 
10 means operating and/or said Secure Processing Means are preferably capable of acting directly on the commands. 

11 

12 The ghost mouse is now described in more detail with reference to Figure 6. A mouse pointer 202 in the shape of an 

13 arrow is shown, however, this may be represented by any shape and there may be multiple pointers. The outline of 

14 the ghost mouse is represented by rectangle 200. The outline and/or ghost mouse may be any shape. The ghost mouse 

15 may be a plurality and said plurality may be coupled and/or discrete. The invention allows that the mouse pointer 

16 maybe: 

1 7 part of a first screen means and/or under the control of a first operating system means, 

18 and 

19 the ghost mouse may be part of one at least second screen means and/or under the control of one at least second 

20 operating system means. 

21 Said pointer and ghost mouse may appear to be one and/or closely coupled, however this may be a illusion caused by 

22 the pointer means and GMM being caused to move in unison and/or as a function of one and/or the other. 

23 The pointer that may be coupled to and/or part of the GMM may be additional to one at least pointers coupled to one 

24 at least operating systems, eg, MOS, however, only one pointer may be seen if they share the same co-ordinates and 

25 move in unison (or equivalent). 

26 The ghost mouse may be attached to the mouse pointer as shown in Figure 6, 

27 and/or 

28 separated and/or detached from said mouse pointer 

29 and/or 

30 within said mouse pointer. 
31 

32 The ghost mouse preferably includes control objects. Unless the point of control is implicit by a GMM 

33 icon/command etc it is preferably the object at the tip of the currently visible pointer means (the pointer may overlay 

34 multiple levels of potentially controllable objects). 

35 The location of said pointers) preferably changes to suit the location of the GMM on the display area. For example, 

36 the pointer as shown in Figure 6 may be appropriate if the GMM is in the top left of the display area. As the GMM is 

37 moved to the bottom left of the display area the pointer preferably relocates to the bottom left corner of the GMM 

38 shown in figure 6. As the GMM moves to the right of the display area the pointer preferably relocates to the bottom 

39 right of the GMM. As the GMM moves to the top right of the display area the pointer preferably relocates to the top 

40 right of the GMM. The invention allows that the position and/or orientation and/or any other characteristics of one at 

4 1 least objects coupled to and/or within said GMM may vary depending on the position of the GMM within the display 

42 area. 
43 
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1 The control objects shown in Figure 6 may only be displayed in pan, and/or may be replaced and/or added to. in part 

2 at least, with any other objects. 
3 

4 The control objects displayed and/or the functions of the control objects may dynamically vary, in part at least, to 

5 accommodate the screen(s), window(s) and/or object(s) they are currentl y controlling . 
6 

7 The preferred mode of operation is to have the ghost mouse hidden, in part at least, until activated. In this case, the 

8 mouse pointer may behave as a normal mouse pointer. Any means may be used to activate the ghost mouse, a 

9 process that preferably displays the ghost mouse control objects, in part at least. 
10 

11 The preferred method of activating the Ghost Mouse Means is to click the least frequently used available mouse 

12 button, preferably only once. For example the Right Mouse Button (RMB) of a PC mouse is less often used. Clicking 

13 said RMB preferably activates said Ghost Mouse, in part at least. If the uj$er actually needs to use the RMB, the 

14 preferred method is to include a RMB activation means within said Ghost Mouse. This may then be clicked or 

15 otherwise activated. In this embodiment, to access the normal RMB function, the user, for example, may click the 

16 RMB once to activate the Ghost Mouse and click the RMB icon within said Ghost Mouse. Other non-limiting means 

17 may include: 

18 • double and/or triple click one or both mouse buttons (in a two button mouse) 

19 and/or 

20 • use one at least additional buttons (for example by supplying a physical mouse means with three at least buttons) 

21 and/or 

22 • by one at least key strokes of the UCDPS keyboard. 
23 

24 As a non-limiting example only, the embodiment described with reference to the drawings assumes the RMB is used 

25 to activate the Ghost Mouse and that there is a RMB control object available within said Ghost Mouse to provide the 

26 usual RMB functions. Once activated the Left Mouse Button (LMB) is used as the usual selection tool for GMM 

27 functions (many users may instinctively select LMB's). A LMB control object is preferably available within the 

28 GMM. The RMB is kept for special GMM functions. Another preferred alternative maintain the LMB as a normal 

29 button, allowing the normal pointer means to concurrently function and utilizes a plurality of RMB clicks to 

30 determine a plurality of GMM functions. The description of one at least GMM functions being elicited by one or 

31 plural clicks of the RMB and/or LMB is not limiting and said elicited may use any means. 
32 

33 It is preferable mat when the ghost mouse is activated the control means are applied to the Controlled Objects) (eg. 

34 window and/or screen) that the mouse pointer overlays at the time of activation and/or the Controlled Objects) that 

35 is currently activated (eg. an active window). It is preferable that the controlled objects) is identified by the 'active 

36 window/screen indicator 1 210. For example, if there are multiple screens on the display, each screen may have a name 

37 and/or graphical indicator (eg. there may be a Microsoft Windows 95 screen, a game screen and an Internet screen). 

38 Indicator 210 may show the screen(s) that the ghost mouse is currently activated for. It preferably also includes the 

39 name and/or symbolic ID of the currently active window(s) and/or object(s). 
40 

41 • The screen(s) and/or window(s) and or object(s) controlled by said control objects may be 

42 referenced as Controlled Objects in this specification. The control objects displayed and/or 
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1 the functions of said control objects may be statically and/or dynamically varied using any 

2 control update means. 
3 

4 It is preferable that these is at least me Controlled Object Ghost Mouse Structure (COGMS) that defines, in part at 

5 least, the displayed control objects and their functions when the Ghost Mouse Means (GMM) is active and/or located 

6 within one at least Controlled Objects). It is preferable that there may be a specific COGMS for each application 

7 piogiam and/or for each window opened by said application program. Said COGM may include information 

8 provided with the program (and/or as a separate file) and/or may be created and/or edited by the user. The preferred 

9 method constructs the COGMS as a text file. 
10 

11 The use of a GMM may change the conventional representation of a Window, for example, as it is possible to 

12 remove all control objects from the Window itself, said Window may only be defined by a bounding perimeter and 

13 this may be zero pixels wide.. 
14 

15 Ghost Mouse Means (GMM) Navigation Tools. 

16 A means is usually required to select one at least control objects within said GMM 200. The preferred method uses, 

17 one at least, Internal Pointer Means (TPM) 201. When the Ghost Mouse is activated it is preferable that the Internal 

18 Pointer Means (TPM) 201 becomes active. As the mouse is moved, IMP 201 preferably moves and pointer 202 

19 preferably remains stationary (unless programmed to do otherwise). Internal Pointer Means 201 is the preferred 

20 means of selecting the control objects of the ghost mouse. The preferred method of activating the GMM in a PC 

21 based on Intel CPU and MOS is by clicking the RMB 300 once. The pointer means 202 preferably remains stationary 

22 after the GMM is activated (until otherwise ordered) and the LMB299 and RMB 300 perform functions in response 

23 to the GMM. While in GMM mode, the Move control object 172 may be activated by placing pointer 201 over it and 

24 clicking the LMB 299. This enables the GMM and preferably pointer 202 to move around the display area and the 

25 LMB 299 preferably functions as a normal LMB 299 button. Clicking RMB 300 preferably returns to GMM mode. 

26 An alternative arrangement may require one at least mouse buttons to be kept activated while pointer 201 overlies the 

27 Move control object 172 to enable the GMM (and/or pointer 202) to be moved around the display area. If the internal 

28 pointer 201 is placed over the LMB control object 171 and the LMB 299 button clicked, a response at pointer 202 

29 location preferably occur that is equivalent to clicking the LMB 299 in non-GMM mode. If pointer 201 overlays 

30 LMB control object 171 and the LMB 299 kept activated, the GMM and/or pointer 202 preferably move and act as 

31 would the mouse pointer 202 should it be dragged with the LMB 299 activated. The RMB control object 173 

32 preferably provides RMB 300 functions for non-GMM modes. \ 
33 

34 When pointer 201 overlays Mouse Remote control object 247 a menu is preferably opened (not shown) that permits 

35 the pointer 202 and/or the GMM to be moved around the display area. For example a control object such as Location 

36 230 control means used to move screen, windows and/or objects may be provided. Any emulation of mouse 

37 movements and or actions is allowed for. This is preferably user programmable to permit flexibility of functions. 
38 

39 The GMM is preferably able to display advertising material 205. As the Ghost Mouse Means is preferably 

40 constructed as a secure overlay means said advertising is also preferably secure and displayed on a priority basis. The 

41 means to deliver said advertising are described elsewhere in this specification. Said area 205 may be used for any 

42 other reason, for example, to deliver messages to the user from the Secure Processing Means. Area 206 preferably 

43 provides the user to further information on advertisers, eg it may open up a window with more detailed information. 
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1 The advertising means described in this specification preferably may apply, in part at least, to advertising material 

2 displayed in said GMM and/or activated from within said GMM. 
3 

4 Reference to 191 demonstrates internal pointer means 201 surrounded by one at least objects (eg 170a and 170b). 

5 This preferably provides a shortcut means to move the pointer 201 around said GMM (and/or directly to deeper 

6 levels of said GMM* eg direct to the objects displayed when active control object 167 is selected). The user, 

7 preferably using the GMM programming functions that may be activated by control object Program GMM 207, may 

8 place targets 170ax and 170bx within the area of the GMM. When said targets are created an equivalent control 

9 object eg 170a and 170b is preferably created in close proximity to pointer 201. These preferably move with said 

10 internal pointer 201 and preferably are not displayed until enabled, for example by clicking the RMB twice. The 

1 1 pointer 201 may then be overlaid on the desired destination, eg 170a and the LMB clicked (for example). The pointer 

12 201 is preferably relocated to the equivalent target 17ax. This system may be extended to place targets outside said 

13 GMM and may be further extended to a normal mouse (or equivalent) pointes means to rapidly move a pointer means 

14 to a plurality of display area screens, windows and/or objects. 
*5 

16 The Program mouse control object 207 when clicked preferably brings up a menu that permits the user to program 

17 various functions in to the GMM. For example they may be able to move control objects, create new control objects, 

18 edit existing control objects as non-limiting examples. For example, the menu control object 250 preferably displays 

19 menus relevant to the presently controlled object (eg a window) and may include multiple hierarchical menus. The 

20 user may wish to place more frequently used menu items in easily accessed locations, eg. Save 251, Open 253, Edit 

21 260, Cut 262, Paste 263 as non-limiting examples. Additional control objects may also be available (these may be 

22 supplied to the user and/or created by the user, preferable using a control object programming means/language). Non- 
23 limiting examples of additional control objects may include, Save++ 252 and/or Open++ 254 that preferably displays 

24 a history of previously used directories that the user may save to and/or load from respectively. It is preferable that 

25 when objects are cut and/or copied that they are stored in a clipboard and it is preferable that said clipboard retains a 

26 record of information cut and/or copied over multiple cut and/or copy operations. The Edit Clip 261 control object 

27 preferably permits the user to edit said record of information. The Paste++ control object preferably enables the user 

28 to access said record of information and select the part(s) they wish to paste. 

29 Other non-limiting examples may include a control object (not shown) that permits multiple blocks of text and/or 

30 other objects to be selected to permit said multiple blocks of text to be cut, and/or copied, and/or changes fonts and/or 

31 other attributes etc. 
32 

33 The Local Tools 270 control object may permit the user to display additional control means relevant to the presently 

34 controlled screen and/or window and/or object and/or application eg display a palette in a paint program. The Icons 

35 273 control object preferably displays one at least icons from a screen and/or window and/or any other means. For 

36 example. Icons may not be displayed on the screen, in part at least, and are access by clicking said 273. 
37 

38 The Secure 301, control object preferably activates a menu that provides access the secure functions of the Secure 

39 Processing Means and/or secure operating system. For example it may provide a secure electronic funds and/or 

40 ordering function. It may provide access to the various means to control/select rights of access applying to EIC. 

41 These are non-limiting examples. Control object Password 302 preferably provides access to a secure password 

42 means, for example, it may need to be entered prior to activating any functions on a UCDPS after power up and/or 

43 reset; and/or to oner one at least files and/or partitions on one at least hard drives and/or any other secure function. 
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1 

2 One potential difficulty with multiple screens and windows is being able to readily access information at multiple 

3 locations that may be at multiple depths. It may also be difficult move to and/or resize screens and/or windows and/or 

4 objects. The Scroll control object 225 provides a means to scroll controlled objects, the Location control object 230 

5 may reposition the screen and/or window and/or object within the display area (and/or off the display area in part at 

6 least). The Size control object 280 may change the size of a controlled object. 
7 

8 Scroll Control Object Means 225. The prior art describes a means for vertically scrolling the contents of a window 

9 by a control means located on the vertical border of said window. It also describes a means for horizontally scrolling 

10 the contents of a window by a control means located on a horizontal border of said window. This is not the most 

1 1 efficient means of scrolling window contents. An improvement to the an is the supply of a mouse (see Microsoft 

12 Intellimouse) that include a small wheel that can be rotated to scroll the active window contents. The present 

13 invention provides a flexible means of scrolling one at least windows using a graphical control object that is 

14 preferably adjacent to the current mouse pointer. It preferably does not require a special mouse and provides an 

15 enhanced method of viewing window contents. It preferably includes user programmable scroll functions. 
16 

17 By moving pointer 201 to the scroll control area 225 various scroll functions may be activated in the active and/or 

18 local (the one presently overlaid by the GMM) window(s). For example, clicking on 225a may cause the window 

19 contents to scroll to the left, revealing information to the right of that presently displayed. Clicking on 225b may 

20 cause the opposite to occur. Clicking on 225c may cause window contents to scroll upwards and clicking on 225d 

21 may cause window contents to scroll down. A vectored scrolling means is preferably provided, for example clicking 

22 on the circle 225e preferably causes the window contents to scroll in that direction (or at 180 degrees to said 

23 direction). Said vectored means preferably provides simultaneous vertical and horizontal scrolling with the vertical 

24 and horizontal component preferably determined by the position of internal pointer 201 on circle 225e. One means of 

25 scrolling contents is to repetitively click on the appr opriate part of the scroll control means 225. This may become 

26 tedious and the Ghost Mouse means preferably includes an automatic scroll means 227. The preferred embodiment 

27 activates the auto mode by clicking on AUTO 227 and disables it by re-clicking 227. The text AUTO is preferably 

28 toggled to the word STOP once in the auto mode. It is preferable that clicking on any scroll control means 225 

29 a,b t cAe will activate scrolling in the desired direction and this preferably continues until stopped. Any means may 

30 be used to stop scrolling, with the preferred means including one at least of the following: 



31 • click on stop that disables auto feature. 

32 • click on centre 225f of circle 225e that temporarily stops scrolling (that is preferably 

33 reactivated by clicking 225a,b,c,d ore). 

34 • click on 225 a,b,cd and/or e that causes scrolling to occur in the new direction. 



35 It is preferable that there is a means to adjust the rate of scrolling. This is preferably implemented clicking control 

36 object T 226 to increase the speed of scrolling and control object 'S* 228 to reduce the rate of scrolling. 
37 

38 The Location control object means 230 preferably has similar controls as said scroll control object 225, however, 

39 they are preferably used to slide and/or move a screen(s) around and/or off (in part at least) the display area; and/or a 

40 window(s) and/or objects) around a screen; and/or object(s) around a window(s). For example, clicking an object 

4 1 230a may cause the controlled object to move to the right, 230b may cause it to move left, 230c may cause it to move 

42 up and/or 230d may cause it to move down. Choosing a point on the circle 230e may cause the controlled object to 
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1 follow that vector. The control objects 231, 232, 233, preferably have equivalent functions (as applied to Location 

2 functions) as do scroll control objects 226, 227, and 228 respectively. 
3 

4 The Size control object means 280 preferably has similar control functions as said scroll control object 225, 

5 however, they are preferably used to increase and/or decrease the size of screens and/or windows and/or objects. A 

6 controlled object is preferably increased to the right by clicking on 280a and reduced from the right by clicking inside 

7 circle 280e adjacent to 280a. A controlled object is preferably increased to the left by clicking on 280b and reduced 

8 from the left by clicking inside circle 280e adjacent to 280b. A controlled object is preferably increased to the top by 

9 clicking on 280c and reduced from the top by clicking inside circle 280e adjacent to 280c. A controlled object is 

10 preferably increased to the bottom by clicking on 280d and reduced from the bottom by clicking inside circle 280e 

11 adjacent to 280d. Similar increase and/or decrease along any vector preferably may be achieved by selecting a 

12 particular location outside and/or inside circle 280e. Control object 280g preferably expands to top and bottom 

13 equally, and 280h preferably reduces from top and bottom equally. Control object 280i preferably expands to the 

14 right and left equally, and 280j preferably reduces from the right and left equally. Other objects (not shown) may 

15 expand equally in all directions, in part at least, and/or reduce in all directions, in pan at least. The control objects 

16 281, 282, 283, preferably have equivalent functions (as applied to Location functions) as do scroll control objects 

17 226, 227, and 228 respectively. 
18 

19 Detemiining the target of one at least of Scroll 225, Location 230, and/or Size 280, collectively referenced as display 

20 managers, may use any means. By clicking the Local 166 control object said display managers preferably apply to 

21 the object that the pointer 202 presently overlays. By clicking the Active control object 167 said display managers 

22 preferably apply to the presently active object. The display managers preferably act on the lowest active component. 

23 For example, if a screen has been activated and no objects and/or windows within said screen, then said display 

24 managers preferably act on said screen. The ID of the active screen is preferably displayed in area 210. If a 

25 window(s) is activated within a screen then said display managers preferably act on said window(s). The ID of the 

26 active Window is preferably displayed in area 170 and the ID of its host screen is preferably displayed in area 210. If 

27 another object type (eg an icon) is active within a screen, then said display managers preferably act on said object. 

28 The ID of the active object is preferably displayed in area 171 together with the ID of its host screen in area 210. If 

29 an object within a window is presently active, the display managers preferably act cm said object within. The ID of 

30 said object within is preferably displayed within area 171, the ID of its host Window is preferably displayed within 
area 170 and the ID of the Windows host screen is preferably displayed within area 210. 

The Default 165, control object preferably allows the user to store the ID of the Screen/Window/Object currently 
qffrrt^ by said display managers by double clicking one at least mouse buttons. Preferably by single clicking (me at 
least mouse buttons the stored ID is preferably used to immediately program the display managers to act on the 
Screen/window/object coupled to the stored ID. 

The Show Active 275, control object preferably displays the presently active object. This is preferably achieved by 
sliding all overlying higher priority screens and/or windows and/or objects away. This process is preferably reversed 
by re-clicking said Show Active 275 (that may have a different label to indicate its changed state). 

When a Window is varied in size the usual result is the cropping of the contents of the window to fit the new size. In 
die case of WWW pages, far example, the text may rewrap and become removed from linked images etc. The FIT 
control object 218 may be used to -compress the objects comprising at least part of a window means such that they fit 
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1 within said window area. The compression preferably maintains perspective. The degree of compression is preferably 

2 determined by the amount required to fit the horizontal component within said window. This may be particularly 

3 applicable where there may only be a small amount of cropping on the horizontal axis compared a large amount on 

4 the vertical axis. For example, when viewing a World Wide Web (WWW) page on a browser, part of the page 

5 (usually the right side) may not be visible and it is usually brought into view by scrolling. A small amount of 

6 compression may fit the entire width of the page in the Window. In contrast, there may be many vertical rows to the 

7 page and compressing this into the window may result in unreadable text/images. Hardware and software methods of 

8 compressing and magnifying images are known to the an. The use of Java and Dynamic HTML are allowing web 

9 page builders to construct formatted pages that retain the format across multiple display means and resolutions. The 

10 FIT facility may be a useful adjunct, allowing said format pages to retain their spatial relationships while adapting to 

11 a plurality of Window sizes. 
12 

13 The transparent control object 221 preferably allows the user to adjust transparency of screens, windows and/or 

14 objects. This function is also available at a deeper menu level, preferably* selected by double clicking the Active 

15 control object 167 and described under this function. 
16 

17 Worm holes. When a display area has multiple screens and/or windows and/or objects, it may be difficult for the user 

18 to view plural information originating from a plurality of screens and/or windows and/or objects and/or from a 

19 plurality of locations within any one at least of said screens and/or windows and/or objects. The prior art describes a 

20 method of splitting window so that plural parts of a window may be viewed simultaneously and/or that enables part 

21 of plural windows to be viewed at once. This is a limited function that only permits the windows to be split along a 

22 horizontal line that extends the width of the window. The function may only be applied to windows within the one 

23 application eg two Microsoft Word windows may be opened and split. The present invention seeks to describe a 

24 means, referenced as Wormholes, that permit the user to create view ports to plural information that may be 

25 distributed across multiple applications and/or windows and/or objects and/or screens and/or operating systems. For 

26 example, the user may have a secure application executing and be able to cut a hole to view operations in a 

27 simultaneously executing program in a MOS environment. Furthermore, the wormholes may be any shape and may 

28 extend through one at least layers of overlying screens and/or windows and/or objects. It is preferable that 

29 wormholes maybe dragged. Reference is now made to Figure 7. This shows a display area 156 that may have two 

30 windows 151 and 152 (these may be screens and/or windows and/or any other objects). For example, wormhole 151 

31 may be created, for example using the Worm 219 control object on the GMM, on window 150. Although shown as a 

32 rectangle, it is preferable that this may be any shape. Said wormhole is programmed to penetrate overlaying screens 

33 and/or windows and/or objects. It is preferable that the wormhole may be programmed to said penetrate to a 

34 preferably user determined number of overlaying means. This may be all overlaying means that would ensure the 

35 wormhole was always displayed and/or a subset of overlaying means, that may result in display of the wormhole 

36 being obstructed by one at least overlying means. It is preferable that the penetration of the wormhole to the front of 

37 the display area maybe on a transparency basis (eg. wormhole pixels are mixed, in part at least, with information 

38 from some at least overlying pixels). This is an example of *push transparency* wherein an object that is buried, in 

39 part at least, behind other displayed means may push forward to be seen on a level determined by its 'push 

40 transparency index. Push transparency = 100% preferably equals wormholes fully visible and 0% preferably equals 

41 wormhole invisibility. This is in contrast to usual transparency means, wherein the transparency of an overlaying 

42 object usually determines how much show through of underlying pixels is permitted. For the present example, it is 

43 assumed that the wormhole is fully visible (eg push transparency of 100%). With reference to figure 7 and modified 
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1 display area 157, window 152 may be moved to partially overlay window lf>0, however, warmhole 151 is displayed 

2 through window 152. In this embodiment it is preferable that warmhole 151 moves with its host window 150. This is 

3 preferably subject to one at least options. It may be that one at least other windows (not shown) may overlay window 

4 150, however, they may have a higher display priority than the wormhole 15 1, preventing it being displayed, in part 

5 at least. 
6 

7 It is preferable that there is an option to permit the wormhole to be moved independently of its host object. For 

8 example, display area 158 shows the windows 150 and 152 in the same location, however, the warmhole 151 has 

9 been dragged to a new co-ordinate in the display area. It may be that information displayed in wormhole 151 

10 continues to be displayed in the original window 150 at location 151a when not covered by other objects. Said 

1 1 warmhole 15 1 preferably may be moved to any user determined (and/or determined by any other means) location as 

12 required. 

13 It is preferable that there is an option to link or unlink the movement of a wprmhole. In the unlinked mode (display 

14 area 160) the wormhole does not move in relationship to other objects. In the linked mode as shown in display area 

15 159 the wormhole may be linked to another object eg window 152 and subsequently moves with said window 152, 

16 preferably maintaining its relationship to other objects within said 152. The invention allows that a wormhole may be 

17 linked to another part of the means from which it originated. For example (not shown), the warmhole may be 

18 dragged to a new position within Window 150 and linked to this position. This maybe useful in a spreadsheet, for 

19 example, where sets of figures in plural locations may need to be examined concurrently. The wormhole provides 

20 much greater flexibility than the cruder option of splitting the window(s) of a spreadsheet. Furthermore, for example, 

21 a wormhole may be established to view a plurality of spreadsheets and/or one at least other means, that may exist as 

22 separate applications and/or screens and/or windows and/or operating systems (that may includes secure operating 

23 systems). The invention allows for a plurality of wormholes and they may have different characteristics and apply to 

24 multiple means. 
25 

26 Active Object Selection and Priority Selection* The reader is referred back to figure 6a. It is preferable that there is 

27 a means to modify active means and/or determine active means, and/or change the priority of screens and/or 

28 windows and/or objects and/or modify other attributes affecting control objects and/or controlled objects. The 

29 preferred method to do this is to double click the Active control object 167 and bring up a selection means as shown 

30 coupled to object 167 of figure 6a. The selection means preferably highlights and/or otherwise identifies the 

31 characteristics pertaining to the presently active mean (eg screen(s) and/or window(s) and/or object(s), that may be 

32 collectively referenced as SMO's). 

33 As anon-limiting example, suppose that the user wishes to apply the display managers and/or any other means to act 

34 on a screen identified as S4. They would preferably click on screen selector 270 that preferably displays available 

35 screens, in part at least The user preferably clicks (eg LMB) the icon identified as screen S4 that preferably becomes 

36 the active screen. In a system where there may be a plurality of displayed (and/or potentially displayed) SMO's, the 

37 user may not know or be sure of the contents of one at least said SMO's. 
38 

39 It is preferable that there is one at least means for the user to ascertain the contents of one at least SMO's, non- 
40 limiting examples may include one at least of the following: 

41 • For example, the affected SMO, in the present example the actual screen S4, may be shown, in part at least, 

42 when the pointer 201 overlays the icon S4. This option is preferably selected by control object Show 281. This 

43 would preferably apply whenever the pointer 201 overlays any of the selection means SO-Sn; and/or SOO-Son; 
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1 and/or WO-Wn; and/or WOO-Won, until deselected, preferably by re-clicking said 281 . It is preferable that when 

2 the SMO, eg Screen S4 is displayed that it may be shown on a transparent basis (eg it preferably has a push 

3 transparency less than 100%). This is preferably selected by control object 284. The display of said screen S4 

4 (and/or any other SMO) is preferably able to be faded up (at a rate preferably selected by said 284) and when it 

5 is no longer needed, it is preferably faded out at a rate also preferably selected by said 284. 

6 • A text and/or image label is coupled to the relevant icon eg S4. This option maybe selected by Label control 

7 means 282. 

8 • A notes means may be coupled to the relevant icon eg S4 that is compiled, in part at least, by the user. This may 

9 include the users own description of the contents and/or any comments. It is preferable that the notes means 
10 maybe edited by said user. This option is preferably selected by Notes control means 283. 

11 

12 Should the user wish to activate an object within a screen, eg screen S4, it is preferable that they select the screen 

13 using the method described and then dick 271 to indicate they wish to activate a screen object This preferably 

14 displays a selection means 271a that includes objects (preferably excludingVindows that preferably have a separate 

15 control means) within said screen, eg S4. The user preferably overlays the desired object, eg S03 and elides this. If 

16 this is the end of the exercise they may close the selection means, preferably by clicking Close control object 276. 
17 

18 Alternativdy, for example, the user may wish to activate Window W2 within Screen SI. In this instance they may 

19 click the Screen control 270 and select S 1 . They preferably then dick Window control object 272 to indicate the next 

20 step is access to a Window(s). They may then click on the W2 icon to select Window W2. Should the user wish to 

21 select an object, eg W04, within said Window, eg W2, they preferably click Window Object Control 273 and than 

22 dick icon W04. 
23 

24 The selection means coupled to said Active 167a preferably may be used to move objects and/or windows and/or 

25 screens and/or vary the display priorities of one at least SMO. Far example, the selection means 270a may be used to 

26 vary the display priorities of one at least screens. One method allows the use to place the pointer 201 over a screen 

27 icon, eg S2 and holding the RMB down, drag S2 to the desired location, for example, it may be dragged to location 

28 Sn wherein said S2 preferably becomes the topmost screen. An alternative, non-limiting example, may be to click the 

29 move button, then sdect S2 and then click Sn to indicate where S2 is to be moved. A similar process maybe applied 

30 to cftfl"gfa£ the display (and/or any other) priorities of screen objects SOO-SOn, and/or Windows WO-Wn, and/or 

31 Window Objects WO0-WO0 and/or any other means. The method may also be adapted to move Window objects) 

32 from at least one Window to another one at least Window and/or screen. For example, activate W04 using the 

33 preceding methods. Click the move icon 277 and for example click W0 to move the object to Window W0, and/or 

34 click Screen S2, for example, to move it to Screen S2 where it may become a screen object. A similar process may be 

35 applied to one at least Windows WO-Wn and/or Screen Objects SOO-SOn. 
36 

37 The transparency control object 279 and/or push control object 278 may be used to adjust transparency of one at least 

38 active objects. For example, by activating Screen S4 and giving it a transparency of 50%, it preferably allows 

39 underlying screens (and/or other SMOs) to show through at 50%. Hie depth that this is permitted may also be 

40 limited. For example, it may be restricted to a depth of S2, for example, by clicking on S2 after sdecting 

41 Transparency 279. A similar process may be applied to the push control 278 that preferably determines the intensity 

42 and number of layers that S4 penetrates to the top of the display area. This process may be applied to any one at least 

43 SMO. 
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1 

2 Hie worm control object 290 is preferably available to create wormholes and apply erne at least attributes. 

3 Wormholes preferably show in the selection means as WO and/or SO objects. They preferably include a means to 

4 show the depth of penetration (eg a dotted line linking wormhole to objects it penetrates. The wormhole preferably 

5 has variable transparency. This may be detennined by the Transparency 279/Push 278 means, for example. The 

6 remove control object 297, preferably deletes a currently selected wormhole(s). A new wormhole is preferably drawn 

7 on a selected object using the Draw control object 291. This may display one at least default shapes, eg circle 292, 

8 square 293. Draw 291 preferably displays, one at least, means, eg similar to said 280, to enlarge, modify, etc the 

9 wormhole. Control object 294 preferable enables the wormhole to be dragged and/or moved. Control object 296 may 
10 allow the wormhole to be unlinked and control object 295 may link the wormhole to one at least SMO. 

11 

12 it is preferable that wormholes may be created by burrowing into displayed objects to unveil underlying means. This 

13 is preferably implemented using the Worm 219 control in the main body of fee GMM 200. 
14 

15 The Transparency control object 208 preferably provides a means for the GMM to be varied in transparency relative 

16 to underlying means. 
17 

18 The Zoom control object 190 preferably allows the size of the GMM and/or objects within said GMM to be varied in 

19 size. 
20 

21 The embodiment described with reference to Figure 6 and 6a is to demonstrate non-limiting examples of functions 

22 that may be include in a GMM. The invention allows that one at least custom control objects 298 may be provided. 

23 The invention allows that a programming language may be developed to enable developers and/or end users to 

24 develop additional functions and/or utilize known functions. The invention also allows that the means of the GMM 

25 may be applied, in part at least, to control means that are not part of a GMM. The invention allows that custom GMM 

26 may be created to suit the requirements of one at least Screens and/or Windows and/or objects and/or applications. 

27 For example, a GMM to optimise a net browser means is described later that may include multiple scroll objects 225. 
28 

29 The invention allows that the images and/or other symbolic control means described for said Ghost Mouse means 

30 may be implemented, in part at least, with physical means coupled to any hardware component of said display 

3 1 pointing means (for example, on the physical mouse), keyboard or any other physical device. 
32 

33 (C) Advertising 

34 Multimedia is expected to converge in terms of: 

35 • the means used to deliver it to users, 

36 and/or 

37 • the means used to meter its use 

38 and/or 

39 • the means used to bill for its use 

40 and/or 

41 • the hardware and software means that convert digital information to a usable format <eg. sound, 

42 images) 

35 
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1 and/or 

2 • the way that advertising is used to sponsor information consumption. 

3 The term advertising preferably may be applied to any promotional material. Said advertising may be static and/or 

4 dynamic and/or include moving images and/or include static images and/or be coupled to audio and/or text, as non- 

5 limiting examples. The methods disclosed in this specification for presenting advertising, for example, the overlay of 

6 advertising over other displayed information, preferably may be applied to the display of any other types of digital 

7 content and/or display means, for example, the overlay of a ghost mouse and/or net browser. 
8 

9 At present the marriage of advertising and electronic content information is somewhat variable depending on 

10 application^ The linking of advertising content to web pages in particular is becoming increasingly annoying as it 

11 begins to overwhelm the web page content One non-limiting objective of the present invention is to describe a 

12 means of hamionizing the presentation of advertising content information with other content information. This is 

13 preferably achieved using a means, that in part at least, may be metered and/or otherwise regulated using secure 

14 processing coupled to a User Controlled Data Processing System (UCDPS) and preferably may occur, in part at least, 

15 online. Said advertising is preferably uncoupled, in part at least, from said Electronic Content Information and 

16 preferably may be applied to plural types of content. The invention allows for a plurality of advertising means. The 

17 decoupling of advertising from particular content preferably enables said advertising to subsidize infonnation that, in 

18 part at least, may be determined by the consumer. Additionally, said decoupling preferably provides the consumer 

19 with the option of selecting how they want said advertising to interact and/or interfere with EIC. The preferred 

20 method of decoupling is to locate the advertising area(s), in pan at least, outside non-advertising information area(s) 

21 and/or decouple content and advertising with respect to time. 
22 

23 The system of advertising described by the present invention preferably provides the option for the user to determine 

24 whether they want advertising sponsorship, in part at least. Said advertising preferably may be used across various 

25 types of information content (eg it is preferably not limited to web pages) . 

26 The consumer is preferably provided the option of not displaying advertising material. The consumer is preferably 

27 able to determine (preferably dynamically) whether or not they want the display of advertising material. If consumers 

28 decline the use of advertising the use electronic content information is preferably metered and the user billed using 

29 any of the methods described in said specifications incorporated by reference, and/or means described in this 

30 specification. If the advertisers are paying, EIC use and Electronic Advertising Content use are preferably both 

31 metered and used, in part at least to determine how much the advertiser may be billed for content use by consumers 

32 (and/or for any other reason). 
33 

34 The preferred means for the consumer to select advertising preferences is via the Secure control object 301, on the 

35 Ghost Mouse Means. This preferably displays a menu (eg using the overlay means of the present invention) that 

36 provides an Advertising Menu. This preferably provides the user with a plurality of options. One at least said options, 

37 preferably allows the user to inactivate advertising and/or specify on what conditions it may be used. Said advertising 

38 menu preferably permits the consumers) to enter a profile about themselves that may be used, in part at least, to 

39 determine the type of advertising and/or conditions attached to said advertising that may apply to said consumers). 
40 

41 A non-limiting objective of the present invention is to describe one at least means to electronically display 

42 advertising information in one or multiple areas on a UCDPS display area. Said means are preferably operable 
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1 offline and/or online, in part at least Said means are preferably secure, in part at least. Non-limiting functions of 

2 said advertising means may include, one at least, of the following, in pan at least: 

3 1) Priority Advertising Means ensures that advertising material supplied to the consumer, preferably in a 

4 tamperproof software container (for example using the PSO described in said WO 97/25675 by Griffits 

5 and/or the secure software container described in said WO 96/27155 by Shear et al,), is displayed using a 

6 means that preferably is not practical to bypass: 

7 • by the user and/or 

8 • one at least unauthorised software and/or hardware means, 

9 said unauthorised software means may include: 

10 • one at least operating systems (for example one at least Microsoft Operating Systems); 

11 and/or 

12 • one at least application programs; 

13 • by any other means. ^ 

14 Said advertising preferably may be delivered with (and/or be part of) non-advertising digital content and/or 

15 separate to said other non-advertising digital content. 

16 Said Priority Advertising Means (PAM) is preferably controlled, in pan at least, by means that are not 

17 pan of the normal operating environment (although it may be), for example by an alternate operating 

18 system and/or processing means. Said alternate processing and/or operating system means is preferably 

19 secure, in pan at least. One non-limiting means of implementing said security may use the secure 

20 processing device and/or secure operating system and/or secure rights management means of said WO 

21 97/25675 by Griffits and/or said WO 96/27155 by Shear et al. Said Priority Advertising Means (PAM) 

22 implemented, in pan at least, with secure processes may also be referenced as a Secure Priority 

23 Advertising Means (SPAM) in this specification. 

24 One objective of said P AM/SPAM is to provide a means to place advertising in position(s) that preferably 

25 ensures the material is not obscured, in pan at least, by other images (that may include other advertising). 

26 For example, if the consumer has agreed (implicitly or otherwise) to view advertising in exchange, in pan at 

27 least, for subsidized (in pan at least) access to Digital Content Information, it is reasonable that means are 

28 used to ensure that the advertising is displayed. It is preferable that said displayed is not overlaid by other 

29 material. 

30 Said priority is preferably obtained by one at least of the following: 

31 • overlaying advertising, in pan at least, over a first group of image means (eg. graphics, text), 

32 however, the invention allows that a second group of image means may overlay said priority 

33 advertising, in pan at least. 

34 • ii) using excess display area to display advertising, in pan at least, for example, one non- 
35 limiting means may include confining the windows environment to an area (x-a) pixels wide 

36 and (y-b) pixels high, (where said ( a* is preferably greater or equal than 0 and less than x, and 

37 where said *b' is preferably greater or equal than 0 and less than y) and displaying advertising, 

38 in part at least, within the residual area (eg. 'a* wide and V) high. The invention allows that 

39 the width and height parameters may be reversed. 

40 • iii) shrinking one at least screens and/or windows and/or objects and/or any other image 

41 means to provide a display area for advertising means, in pan at least 
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1 • iv) including advertising in pan at least of a screen and/or window and/or object and/or any 

2 other graphics means used as a screen saver. 

3 • v) using the area occupied by other advertising, in part at least, to display alternative 

4 advertising. 

5 • vi) including advertising material within and/or coupled to, one at least, displayed screen 

6 control means (for example, the ghost mouse means described in this specification, pop-up 

7 dialog boxes, pull down menus, on screen helpers etc), preferably without compromising said 

8 controls, in part at least The user preferably can move the location of said screen control 

9 means. Said moved may include coupling to the position of a mouse pointer means, 

10 mnintflming a constant and/or variable relationship to a mouse pointer means. Said screen 

1 1 controls are preferably variable in the level of their transparency relative to information that 

12 they may overlay. 

13 The protection of advertising material against tampering may be achieved, in part at least, by writing it to 

14 display memory buffers, preferably using secure means, and said buffers are preferably inaccessible by 

15 unauthorised processes. Said inaccessible preferably applies to both write and read processes. Said 

16 PAM/SPAM provides a means that may be used to ensure advertising is presented in a prominent position, 

17 however, the advertising may not be seen and/or interacted with. For example, if the advertising is 

18 presented in a format similar to that used with television commercials, wherein the program material is 

19 temporarily replaced with advertising material, the consumer may leave the room, switch to an alternate 

20 information source etc. If the advertising is displayed concurrently to other useful information it is 

21 presumed that some advertising benefit may be obtained. However, the consumer may not take any notice 

22 and/or interacts in any other way with the advertising. 
23 

24 The ability to preferentially display information on the display means of a UCDPS may provide a very 

25 powerful marketing tool. For example advertising presented during system booting, as part of screen savers 

26 and/or as part of display based control means (eg. ghost mouse) is likely to provide much greater exposure 

27 to users than many alternative means. Furthermore it may be displayed in a manner that ensures its 

28 presentation (if the display means is not blanked, switched off or otherwise limited in function). In contrast, 

29 for example, an ad within a www page usually needs to be selected by the user from millions of alternatives 

30 and it is susceptible to bypassing (eg extraction). 
31 

32 However, the display of advertising on a UCDPS that is beyond the control of the user to disable and/or 

33 modify may sufficiently antagonize said user that they deliberately avoid the products advertised and/or 

34 coupled DCL One option is to permit the user to decline the display of advertising and the disablement is 

35 preferably available on a temporary basis. Said temporary is preferably any user-determined basis. The 

36 invention allows that during said disablement period the user may be charged for the use of Electronic 

37 Content Information. An alternative and/or conjunctive option is to provide incentives to the user in 

38 exchange for presentation of advertising. This may include the incentive of free and/or subsidised Digital 

39 Content Information, however, it preferably includes more explicit incentives, for example, prizes and/or 

40 cash rewards and/or discount coupons. 
41 

42 2) Advertising Relocation Means. It is preferable that one at least advertising area(s) may be moved to 

43 different regions of die display by the user, preferably to locations that suit the user. The advertising 
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1 movement, in part at least, is preferably by a mouse (or functionally equivalent) pointer means and/or by a 

2 ghost mouse means (as described elsewhere in this specification). One non-limiting means to achieve this is 

3 to have the ad(s) as part of an overlay means as previously described, for example, the advertising may have 

4 its own screen that may be moved using previously described screen controls. 
5 

6 3) Advertising Transparency Means (ATM). It is preferable that said advertising area(s) has a variable 

7 level of transparency means. Said transparency preferably may be adjusted from 0% (ie. no objects visible 
g behind) to 100% (ie. no advertising area visible). Said transparency is preferably adjustable by the user. The 
9 transparency adjustment, in part at least, is preferably by a mouse pointer means and/or said ghost mouse 

10 means. The advertising area(s) preferably can be increased in intensity from not visible and/or partly 

1 1 visible, to more visible and/or fully visible. The reverse process preferably also applies. 
12 

13 4) Advertising Scrolling Means (ASM). It is preferable that said advertising areas may have contents that 

14 may be scrolled within said area(s), preferably in any direction, and preferably under user control. Said 

15 scrolling may display hidden parts of a currently displayed ad and/or may display one at least other 

16 advertisements. Said ASM may include and/or be coupled to (that may include a ghost mouse) control 

17 means to scroll said advertising (and/or one at least other functions). 
18 

19 5) Advertising Area Size Means (AASM). It is preferable that areas used far advertising may be varied in 

20 size, preferably under user control, in part at least. It is preferable that said area may be replaced, in part at 

21 least, by any representative means, eg an icon, that when clicked restores the advertising area, in part at 

22 least. Said restore may be to any size, for example, to a predetermined default and/or the size it was prior to 

23 replacement by said icon. The GMM previously described is readily adapted to provide this function. 
24 

25 6) Incentive Advertising Means. The majority of advertising may be considered to be incentive based, 

26 however, said incentive may not be explicit. For example, television commercials are usually underwriting 

27 the cost of 'free to air* television program material, however, the viewer may not appreciate this. If the user 

28 was actually charged to view program material and offered the option of having said charges offset, in part 

29 at least, in exchange for viewing commercials the incentive is likely to be more explicit. 
30 

31 Incentive Advertising 

32 One method of encouraging users to view Electronic Advertising Information (EAI) may be to provide various 

33 incentives. One of these may be to underwrite the cost of providing ECL Another may be to award discount coupons, 

34 prizes etc. Another alternative may be to pay consumers to view advertising material. These may be effective 

35 methods, however, they may also be manipulated by consumers and/or others. 

36 For example, suppose consumers have access to a means that rewards the consumer (eg, cash, coupons for use 

37 against purchase, discount coupons, pays ECI usage fees) in exchange for viewing advertising. This is referenced as 

38 Incentive Advertising. 
39 

40 Using a means to display advertising in the display area of a UCDPS, the consumer may view the EAI. Said means 

4 1 may be referenced as an Electronic Advertising Display Means (EADM), non-limiting example may include: 

42 • web browsers), 

43 • overlay program(s) of a browsers) to provide and/or enhance advertising display functions, and/or 
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I • advertising display program(s) that are independent, in pan at least, to said browsers). 
2 

3 Passive Interactive Advertising Means. Some advertisers may not require the consumer to interact with the 

4 advertising as proof they have paid attention and/or interacted in any other way with EAI. The user may only be 

5 required to permit (or be thought to permit) the display of the information to receive a reward. For example, the 

6 preferred embodiment of the invention describes a Priority Advertising Means (PAM) to display advertising 

7 material Said PAM may display EAI using any means, that may include one at least of the following: 

8 • during system booting; and/or 

9 • during screen saver operations; and/or 

10 • as part of displayed control means, in particular, a ghost mouse; and/or 

II • at any other time and/or display area locations). 

12 Said PAM is preferably reserved, in part at least, for one at least advertisers who agree to sponsor, in part at least, one 

13 at least consumer's information usage for a period of time eg, a year. Said advertisers are preferably coupled to a 

14 program that provides additional benefits to consumers who actually purchase their goods and/or services from the 

15 sponsors. Hie sponsors may be referenced as Primary Priority Advertising Sponsors (PPAS) in this specification. 

16 PPAS may operate on the basis that advertising may be presented frequently enough that it may eventually impact on 

17 the user. For example, 30 (it may be any number) sponsors may be sold PAM (and/or other advertising means) on 1 

18 million (it may be any number) UCDPS, for a period of one year (it may be any period). Each sponsor preferably 

19 advertises goods and/or services that are not competing with other sponsors. For example, there may be an airline, 

20 bank, cola drink, games vendor, telephone carrier, etc. These may be major brands, in part at least Various local (eg. 

21 doctors, chemists, plumbers, restaurants) and/or regional and/or national businesses may be sponsors. Each sponsor 

22 preferably may determine the number of consumers they wish to sponsor. For example the Intergalactic Space Food 

23 and Drink Company may wish to promote its highly efficacious cola to the planet (and beyond!), whereas the local 

24 restaurant may only be interested in consumers living in the western suburbs of Brisbane, Australia. Each sponsor 

25 preferably pays $1.25 (it may be any amount and may vary from one sponsor to another) per year for the PAM 

26 access. This may contribute $3730 (the amount may be any) per year towards a consumer's ECI consumption, less 

27 commissions to ancillary hanger's on and sundry! PPAS payments may be pro-rated against ECI usage, for example 

28 sponsors may pay 50% (it may be any amount) of usage charges until they meet their agreed amount. Said payments 

29 are preferably directed, in part at least, to the information provider (eg producer, and/or distributor, and/or dealer, 

30 and/or service provider as non-limiting examples). Said payments may be available, in part at least, as cash and/or 

31 other direct benefits) to the consumer. 
32 

33 The preferred method of providing consumers cash and/or other benefits is by the use of competitions, preferably 

34 offered at random intervals. For example, if the consumer is actively displaying advertising, in addition to covering 

35 ECI usage, in part at least, they may be provided an opportunity to participate in a game of chance. The Secure 

36 Processing Means described in this specification (directly and by reference) provide an online and offline means of 

37 providing competition, including those involving an element of chance. 

38 The preferred method of ensuring that PAM is displayed to the consumer preferably uses a Secure Processing Means 

39 that may write to secure display memory. This preferably use the overlay means described in this specification that 

40 preferably displays advertising where it is likely to be seen if the consumer is watching the display area. The 

41 advertising information is preferably delivered in tamperproof software containers (eg PSO of said WO 97/25675 by 
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1 Griffits). Said PAM may be SPAM and may include one at least of the advertising and/or other means described in 

2 this specification and/or incorporated by reference. 
3 

4 Interactive Incentive Advertising Means. (HAM) Other advertisers may require confirmation that a consumer has 

5 interacted with the EAI in some manner to verify that they may have given it some attention and/or that it was 

6 actually visible in their display area. For example the user may be required to answer one at least questions pertaining 

7 to displayed information. 
8 

9 Local Auto Incentive Advertising Processing Means (LAIAPM). The present invention describes a means where 

10 the process of verifying consumer interaction with advertising material may be automated for the user, in part at 

11 least. Said automated may occur even if the advertising is not displayed and/or is overwritten by other information. 

12 For example, the user may cache incoming Incentive Advertising (eg. using a utility program). Said cache may 

13 remember the user's response to Incentive Advertising when first shown* When new Incentive Advertising is 

14 supplied (eg. from the Internet and/or retrieved from its own local storage means coupled to a UGDPS) it may be 

15 compared with said cached. A means (eg the utility program) may include a method to automatically transfer the 

16 correct response to a remote location. Some protection against this may be achieved by limiting the number of times 

17 that a particular advertisement is viewed and coupled with benefits. 

18 Remote Auto Incentive Advertising Processing Means (RAIAPM). A bigger problem may present if multiple 

19 users and/or agents use a network means (eg. the Internet) to extend the cache comparing means described in said 

20 LAIAPM. For example, 660 of figure 8 shows one ad server and 661 a second ad server means. There may be any 

21 number of ad servers that may supply any number and combination of users eg, 651, 652, 653,654. At any time any 

22 user may be connected to one or multiple ad servers. A plurality of users may transmit ads received from said servers 

23 and their responses to interactive parts of the advertisement, to one at least common cache 650. For example, when a 

24 user receives an ad from said ad server it may be redirected to one at least common cache 650. The information may 

25 be compared with other cached information. If a hit occurs said cache may check the correct response and forward 

26 this to the user and/or directly to said ad server and/or any other means to enable the user to receive a credit for 

27 accessing the advertisement. The user may be charged a commission. If the information is not cached the user is 

28 preferably informed and preferably manually responds to the advertisement. Their response may be sent to ad servers 

29 (and/or any other receiving means) and is preferably supplied to the common cache 650 to be available by other users 

30 and/or the same user at a later time. The invention also allows that an ad analysis means 659, that may be one at least 

31 persons reading and/or responding to Incentive Advertisements, may be coupled directly (eg in the same premises) 

32 and/or indirectly (eg via the Internet) to said common cache 650. The invention may also be implemented with 659 

33 and without common cache 650. This process may enable a consumer to have one at least incentive accounts (that 

34 may be local and/or remote to their UCDPS) to be credited without viewing some at least of the Incentive 

35 Advertising. Furthermore, where the incentive may be a coupon (eg. providing a discount against purchase), these 

36 may be remotely categorized and preferably stored on said UCDPS. For example, when a consumer wishes to 

37 purchase a new widget they may reference all coupons dealing with widgets. They may find the best offer. To 
38 . determine said best offer they may, access, preferably using a utility software program, local and/or remote price 

39 structures to determine the net price after coupons. For example, one supplier may provide a discount of $20 off the 

40 price of widgets. A second supplier may only discount $10, however, their base price may be $20 cheaper. Said 

41 second supplier may actually be cheaper. Said utility program (that may be acting as a software agent) may also 

42 access (eg. gatecrasher classifieds) one at least suppliers who do not provide coupons (and/or have not provided said 

43 consumer a coupon) to see if they are a cheaper source. This entire process may occur in a few seconds and be 
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1 transparent to the user. It is also likely to destroy the underlying basis of the coupon system. Fundamentally, 

2 existing marketing methods rely on the difficulties of effective price comparison using manual means. Electronics 

3 may make this a precise science. 
4 

5 On the other hand, the secure overlay means described in this specification may be used to ensure that the incentive 

6 advertising is delivered in a secure software container, that is unwrapped in a secure processing environment and 

7 displayed in secure graphics memory. Each container is preferably unique, preventing the user comparing it with 

8 other information automatically. The user is preferably prevented form reading the image/text information in digital 

9 format, thus preventing the transfer of this information to third parties. If the user wishes to avail themselves of the 

10 benefits of incentive advertising, they will need to personally view the material (or have someone else at their 

1 1 UCDPS do it!). Note: in this specification, user(s) and consumers) may be used interchangeably. 

13 The preferred method of electronic advertising is to couple an alternate processing means to one at least UCDPS. 

14 Said alternate processing means preferably includes a Secure Advertising* Means (or SAM) Said SAM may be 

15 implemented using logically secure processes within a UCDPS, however, it is preferable that said software processes, 

16 in part at least, occur within a logically and physically secure device. When read in conjunction with the present 

17 specification the secure processing devices described in said WO 97/25675 by Griffits and/or said WO 96/27155 by 

18 Shear et al, may be adapted by those experienced in the art to implement said SAM. Said secure advertising means 

19 preferably generates and displays advertising material using means that are preferably not accessible to: 

20 • the user; and/or 

21 • any application program, preferably other than authorised advertising and/or other authorised 

22 programs; and/or 

23 • operating systems, preferably other than authorised operating systems. 
24 

25 For example, a PC may be operating with a Microsoft Operating System, however, said operating system, in part at 

26 least, is preferably unable to read and/or write and/or modify and/or interfere with the display of advertising that has 

27 been generated, in part at least, by said SAM. 
28 

29 The reader is directed to Figure 9. An Ad server 3 10 is shown. This is preferably a software function executed by the 

30 secure processing means 5 (a non-secure processor may be used). Said secure processor is preferably logically and/or 

31 physically secure. The combination of secure processor 5 and ad server 310 may be referenced as a secure 

32 advertising means (SAM). Said SAM preferably manages the display of advertising material 3 13 and preferably uses 

33 a secure overlay mode to place it on the display area 311, preferably overlaying content information 312. SAM may 

34 interact in any way with the GMM to manipulate advertising material. It may also display a value to the user for 

35 displaying advertising and/or a cost to the user if they do not, as non-limiting examples. 
36 

37 The display of advertising is preferably not linked to the display of content information 312, in part at least. SAM 

38 may obtain advertising material by any means, non-limiting examples may include: 

39 • 316 Physical media, eg CD, DVD; and/or 

40 • 317 Internet (eg. it may extract ads from WWW pages and/or access one at least ad servers); and/or 

41 • 318 Broadcast; and/or 
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1 • 319 via the Public Switched Telephone Network {PSTN)* for example, it may call a toll-free number, 

2 and/or 

3 • 325 one at least networks. 

4 Advertising is preferably cached on one at least mass storage means 3 15, for example, hard disk, CD ROM, DVD. 
5 

6 SAM preferably has access to one at least User Profiles 340. These are preferably securely stored on the UCDPS and 

7 not released externally. It may include a flag 341 indicating one at least users does not want advertising and/or the 

8 conditions attached to one at least users accepting advertising. Said user profile may be completed, in part at least, by 

9 the user and/or on the basis of user access to various locations, eg websites. Said user profile may include any 

10 demographic details, personal and/or business preferences etc. It is preferable that the advertising material is coded to 

11 enable said user profile to be used to identify appropriate material. This method allows advertisers to better target 

12 consumers. SAM may send a software agent to locate relevant advertising material. It is preferable that said SAM 

13 and/or any other means also collects information that is not relevant to the user and preferably not shown to the user, 

14 in part at least. This approach may confuse parties compiling accurate profiles on the users. It is this inventors belief 

15 that advertisers should be able to better target advertising and that this may also be beneficial to users. It may not be 

16 beneficial for users to have their profiles open to the marketplace, regardless of the statements made by third parties 

17 as to privacy. 
18 

19 Hie secure processing means of the present specification and those incorporated by reference provide for the secure 

20 metering of information use, including advertising use. A secure service provider preferably collates metered 

21 advertising usage. Hie advertiser is preferably provides gross billings and sufficient statistical information for 

22 commercial purposes, without being given access to individual usage. The metering and reporting means described in 

23 the specifications incorporated by reference are readily adaptable by those experienced in the art to metering and/or 

24 reporting and/or controlling of advertising usage. 
25 

26 It is preferable that the password means that provides access to the UCDPS (that is preferably a secure password 

27 means coupled to said secure processing means 5) is linked to SAM. One non-limiting reason may be to enable SAM 

28 to select the user profile that matches the present user. 
29 

30 It is preferable that advertising material 320 is provided in a format that includes content 321 and control information 

31 322 about its usage and/a- pointers 324 to said control information. It is preferable that said control information 322 

32 and/or pointers 324 are securely coupled, preferably by encryption. It is preferable that part at least of the advertising 

33 content 321 and/or control information 322 and/or pointers 324 are within a secure software container, that is 

34 preferably protected by encryption. Non-limiting examples of said control information may include one at least of the 

35 following: 

36 • 330 Validity of the advertising material, for example an advertisement may only be current 

37 for a certain period. 

38 • 331 how many times the ad may be showed to a user and/or the pattern of showing. 

39 • 332 me age group me advertising is directed to. 

40 • 333 demographics codes and/or other criteria applicable for detennining whether or not to 

41 show said advertising to particular consumers with particular user profiles. 
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1 • 334 the value to the consumer for viewing said material. This may be discounted for multiple 

2 showings. It may include bonuses if accessed by particular types of users (and/or for any 

3 other reason). 

4 • 335 any restrictions on using this material when the consumer may have been exposed to 

5 competitor advertising, for example, there may be a time delay between ads for one car 

6 manufacturer and another. 

7 • 336 whether the advertising includes games and/or competitions and/or may be coupled to 

8 games and/or competitions supplied by alternative means. 

9 • 337 the content of the advertising. 
10 

11 

12 The disclosed specifications incorporated by reference describe PSOs and/or digital containers that are similar to the 

13 structure required to implement an advertising Protected Software Object (PSO). The invention allows that 

14 advertising PSO(s) may include advertising content for a plurality of advertisements and/or a plurality of control 

15 means. 
16 

17 

18 It is preferable that a means is provided to encourage users to view advertising material. The benefits of having E1C 

19 usage paid for, may be one said means to encourage users. It is preferable that there are additional incentives. For 

20 example the user may be paid to view advertising. The secure means of the specifications incorporated by reference 

21 describe means for secure electronic commerce. This may be readily adapted to pay electronic funds to the consumer. 

22 For example it may be possible to securely meter usage and securely reward the consumer offline. The invention 

23 allows for any online involvement. The invention particularly allows for secure advertising means thai are coupled, 

24 in part at least, to secure processing and/or secure operating and/or secure rights management means. 

25 Many consumers also like games of chance. It is preferable that this may be used as a means of encouraging user 

26 interaction with advertising. 
27 

28 The provision of: 

29 • secure processing, and/or 

30 • secure transfer of software objects, and/or 

31 • secure electronic fund means, and/or 

32 • the flexible display means of the present invention, 

33 provides the tools for those experienced in the art of electronic games of chance to implement one at least secure 

34 games of chance, that preferably may run offline, in part at least. Those experienced in the art may adapt present 

35 Internet casino games, for example, to replace the online metering with a secure offline means. The invention also 

36 allows for the use of games of chance that depend an an online connection, in part at least. It is preferable when 

37 games of chance are used as promotional tools that participation is free to users. Users preferably may win prizes 

38 and/or product discounts and/or cash and/or coupons and/or any other reward. 

39 The process described for integrating games of chance with advertising and other forms of promotion may be readily 

40 adapted to an offline, in part at least, casino means, preferably providing a plurality of gaming services. 
41 



BNSOOCID: <WO 9654872A1J_> 



44 

SUBSTITUTE SHEET (RULE 26) 



WO 98/54672 



PCT/AU98/00403 



1 Any means may be used to integrated advertising into games of chance. For example, the user may be required to 

2 view advertising prior to the game being commenced and/or prior to collecting prizes. Advertising may be 

3 incorporated into the game. Advertising may be shown concurrently to the game being played. The invention allows 

4 that the user may be exposed, in part at least, to advertising what offered the opportunity to play a game of chance 

5 (this may also be based on a random event and/or other element of chance). A casino PSO 360 is shown in figure 9. 

6 This may be a complete casino package that is supplied encrypted, in part at least. This preferably includes and/or 

7 securely points to, information on the conditions of use and/or rules of said casino. 

9 The awarding of prizes (that may include cash) to consumers may include the updating of electronic credits coupled 

10 directly (eg within a secure processing means) and/or indirectly (eg a smart card) to a UCDPS. It may include the 

11 transfer of electronic funds means via the Internet, in part at least The secure processing means may also generate a 

12 code(s) that may be used in exchange for rewards (that may preferably be any type of reward). The means used for 

13 awarding prizes may also be used, in part at least, to provide consumers w^th coupons (that may be for any reason 

14 and may include reasons that are independent of games of chance) that may be used in exchange for goods and 

15 services, in part at least. 
16 

17 Said code(s) may be printed on a physical media (eg papa*) and/or transferred to a portable secure means (eg smart 

18 card, smart watch) as non-limiting examples. Said code is preferably a one off code that uniquely identifies the 

19 source of the code (eg the secure processing means), the prize, the date, and the consumer ID as non-limiting 

20 examples. 
21 

22 Prior art that issue coupons via the Internet may need to store a database of coupons detailing who they have been 

23 issued to. The means of the present invention for awarding coupons and/or prizes does not require such a record. The 

24 secure processing means may create said awards/coupons using predetermined and secret processes and preferably 

25 may do this offline, in part at least. When said coupon/award is claimed the code preferably may be regenerated by 

26 another secure processing means to confirm the validity of the coupon and/or award. 
27 

28 This may require the award/coupon redemption means to communicate with an authorised service provider with 

29 knowledge of the trusted means in said secure processing means 5 (or any other secure means) and/or said 

30 redemption means may have a secure means to perform validation. A database may be required of used coupons 

3 1 and/or awards to prevent reuse where prohibited . When the reward means is within a portable secure means (eg smart 

32 card), said portable secure means may erase the code, providing for an electronic coupon method that is independent 

33 of remote database means to track used and/or expired awards/coupons. 
34 

35 When a UCDPS is left inactive for a preferably predetermined period of time, advertising material may be shown in 

36 the display area, in part at least This may use any of the means described for advertising in this specification. The 

37 information on display prior to the advertising material being displayed, is preferably redisplayed, in part at least if 

38 said UCDPS is reactivated (eg by mouse movement key depression as non-limiting examples). If said reactivation is 

39 greater and/or equal to said predetermined period, it is preferable that said advertising and or other images remain on 

40 the display area until a password is entered. This may be used as a security means. 
41 
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1 Secure Mass Storage Means. The means described for the secure processing means 5, to intercept I/O calls may 

2 also be adapted to intercept, in part at least, calls by the system operating means to one at least mass storage means, 

3 for example, a hard disk, 

4 For example, the secure processing means (and/or any one at least other alternate processing means) may partition 

5 one at least mass storage means, using any method, 

6 wherein, 

7 one at least said partitions may not be apparent to the system operating means 

8 and 

9 partitions that are apparent to said system operating means may be logically partitioned, in part at least, as 

10 determined by said operating system, however, their physical partitioning may vary, in part at least. The secure 

11 processing means may apply password protection to one at least system partitions and/or files in said partitions. Said 

12 password means may be transparent to said system operating means. The invention allows for any pre-processing by 

13 said secure processing means 5 of information transferred by the system operating system to said mass storage means 

14 and/or the reverse process. The secure processing means is preferably able^to encrypt/decrypt files and/or any other 

15 information, stored to and/or retrieved form said mass storage means. This is preferably transparent to said system 

16 operating means. 
17 

18 Secure Transaction Processing Means. 

19 The secure processing means described for trusted systems may be adapted to portable secure means, for example, 

20 smart watches, smart cards. One potential problem with the known art of said portable secure processing means (that 

21 may be referenced as PSPM) is that when the owner of said PSPM is required to key information into any input 

22 means provided by another party, there is a possibility that the keyed information may be intercepted and/or saved for 

23 future unauthorised use. For example, the PIN number may be obtained. The user's input data may also be modified 

24 for any reason, for example, to debit smart cards with more funds than the user intends. If the presentation of 

25 information (visual and/or auditory) pertaining, in part at least, to the transaction is in the hands of another party, 

26 there is no certainty about the truth of what the user of the PSPM sees/hears. One solution may be to integrate a 

27 display means and/or keyboard means into said PSPM. Alternatively and/or in conjunction, a Personal Security Unit 

28 (PST) may be provided, that interfaces directly, in part at least, with said PSPM that provides the input and/or output 

29 means, in part at least. As the PST is the property of the user and as it directly transfers, in part at least, input directly 

30 to the PSPM and/or any external processing (preferably secure) means, the user of their PSPM may be confident that 

31 clear code versions of their PIN have been entered directly into their PSPM and any part of the PIN that may be 

32 required by external processing means may be transferred, in part at least, in encrypted format. The generation of the 

33 encrypted PIN is preferably performed by said PSPM. Part of the generation of the encrypted PIN may be performed 

34 by said PST, however, it is preferred that said PST remain a low cost, minimal device that is not dependent on 

35 integrated security. Other information input by the user of the PST is preferably processed by the PSPM, especially 

36 financial amounts. In this way no usable information may be accessed between PST/PSPM and any external secure 

37 means (eg smart card reader in the store). 
38 

39 Information that is displayed pertaining to the cost of a transaction or similar, is preferably received by said PSPM, 

40 processed and the amount to be charged output to said PST to enable the user to verify the amount* 
41 

42 The invention allows that communications between PSPM and PST and/or an external secure processing means (eg 

43 store terminal) may be audio and/or electrical and/or optical and/or infrared and/or radio/microwave. The preferred 
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1 embodiment of a PST is a form factor and transfer means equivalent to the PSPM (to couple with an external secure 

2 processing means), with suitable connections for the PSPM protruding from said PST when the PST requires direct 

3 connection. 
4 

5 This may be better understood by reference to Figure 10. A PSPM 402 includes a coupling means 401 (in this 

6 example a connector). This may couple directly to an external secure processor eg a store smart card reader 409 using 

7 socket 408. It is preferably coupled to said 409 via PST 404. It may couple to said PST 404 using connector 403. 

8 Said PST may couple to said 409 using connector 407 and socket 409. The PST preferably includes a display 405 and 

9 keypad 406. When a password is first entered at keyboard 406 it may be passed to PSPM 402 for processing via 

10 interlace means 401/403. PSPM may be activated if the password is valid. This may be indicated to the user by 

11 sending a message to display 405. Terminal 409 may said the amount of the transaction to PSPM 402 (passing 

12 through PST 404). PSPM preferably decodes this infarrnadon and sends the amount in clear text to display 405. The 

13 user preferably confirnis/denies the amount using keyboard means 406. Invalid PSPM 402 preferably generates a 

14 validation code and sends it to terminal 409. 
15 

16 The invention also allows for any means that allows one or multiple partitions of secure memory to be accessed 

17 by one or multiple secure processing means, such that there is no practical way for programs within one 

18 partition to alter and/or threaten the security of other functions - deliberately or otherwise, unless otherwise 

19 determined eg, secure system functions. 
20 

21 The preferred means of protecting the system partition(s) from user partitions and/or user partitions from one 

22 another is described with reference to Figure 1 1. 
23 

24 Security is maintained in part at least, by allocating an area of system resources that are known to have secure 

25 routines that may allocate various user resources without compromising system memory security and user 

26 security. The invention allows for any means to do this. 
27 

28 To permit a secure processors) means to perform secure and unsecure processing, any means is allowed for to 

29 maintain security when program execution is transferred from unsecure locations to secure locations. Ensuring 

30 secure processing begins at known routines enables software processes to further control On part at least) 

31 system security. A similar process also enables processing to return from a secure user function to secure 

32 system functions. The preferred method checks the processor address bus, ensuring that the initial access to 

33 secure memory is an instruction fetch to intended address locations - ensuring known outcomes in subsequent 

34 processing. Any method/apparatus may be used, with one means described with reference to Figure 11. 

35 Comparator 100 examines die address bus of the secure processor 101 and compares it to one or multiple 

36 predetermined address locations 102 (these may in part or whole, be programmable locations - security is 

37 preferably maintained by only activating address decoding to these programmable registers when the secure 

38 system resources are active) and the instruction signal line 103 is examined to ensure this is an instruction 

39 fetch. A valid outcome activates all the secure memory, allowing system resources to access any user partition. 

40 However, the invention allows that part at least of one or multiple user partitions may not be enabled (access to 
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1 these may be gained using a similar process used to activate the secure system partition and/or any other 

2 method). 
3 

4 While software objects are executing from within secure system resources, security may be maintained in part 

5 or whole by software processes. 
6 

7 The decoding by 110 allows that the partitons allocated to system and/or user resources may be varied in size, 

8 in part or whole, preferably by writeable registers that can only be decoded when access to secure system 

9 memory is activated. 
10 

11 When secure processing is to terminate, the disable line 1 1 1 inactivates decode logic. Hie invention allows for 

12 any method to do this, with the preferred one being to decode the disable signal into the secure system address 

13 space and delay its activation until another instruction has been fetche&from secure system memory - usually 

14 an instruction redirecting processing to unsecure functions. 
15 

16 While it is generally permissible to allow system functions to access user resources, the reverse does not 

17 usually apply, similarly, different user partitions usually need to be protected from one another. The invention 

18 allows for any means to do this- The preferred embodiment has secure system routines program secure decode 

19 logic with register bounds defining a user partition prior to transferring processing to said user partition. Once 

20 processing is transferred to these locations other secure area are usually prevented from being decoded until 

21 processing returns to known system resources. Delayed activation of the user decoding for one (or as otherwise 

22 determined) instruction cycle allows an instruction to be fetched from system resources directing processing to 

23 a secure user partition. 
24 

25 The invention allows for any means to prevent processing being trapped in a user partition (usually secondary 

26 to a software error) and in particular any means dependent on the timeout (and/or equivalent) of one or multiple 

27 timers and/or software routines. The preferred method is to use a watchdog timer (that may have a 

28 programmable timeout). A similar mechanism may be used to allocate a particular time slice to a user partition 

29 prior to returning processing to secure system resources (and/or elsewhere). The invention allows that the timer 

30 may automatically timeout when triggered by any one or more exception (eg interrupts, reset etc). Timeout may 

31 be zero and/or any other predetermined value. 
32 

33 The timeout process usually returns processing to secure system resources - this may use any means. The 

34 preferred means does not interrupt the secure processing means, however, it redirects processing to secure 

35 system memory by multiplexing the address output by the next instruction seek, redirecting the instruction 

36 fetch to secure system locations. The decode lqgic for secure system resources is also reactivated. The address 

37 of the instruction originally intended for fetching by the processing means is saved in a storage means to enable 

38 a return to this instruction later. Other relevant parameters eg. condition codes, stack pointers, may be saved 

39 using secure system routines. 
40 
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1 The invention also allows for any software means to transfer processing from secure user to secure system 

2 functions, the preferred means being a software counter that is updated at the completion of selected or all 

3 subroutines within a user partition that on timeout, accesses one or more address locations to trigger equivalent 

4 responses to the watchdog timer. 
5 

6 Claims. 

7 

8 1. A method of priority advertising on a User Controlled Data Processing System, wherein said advertising may be 

9 displayed, in part at least, using means that may not be accessed by the operating system of said User Controlled 

10 Data Processing System. 

11 2. The method of claim 1 wherein said operating system is one at least versions of Microsoft Windows. 

12 3. A method of coupling a display control means to the movement of a pointer means, wherein, said display control 

13 means, in part at least, includes a means of scrolling one at least Windowsf and/or moving one at least Windows, 

14 and/or resizing one at least Windows. 
15 

16 4. A method of metering electronic advertising displayed on a User Controlled Data Processing System using offline 

17 means that include a logically and/or physically secure means, 

18 wherein, the user is compensated for accessing and/or interacting with said advertising. 
19 

20 5. A method of offline gaming using a secure processing means coupled to a User Controlled Data Processing 

21 System. 
22 

23 6. The method of claim 5 wherein, said gaming is part of one at least advertising means. 
24 

25 7. A method of priority display of advertising on a mobile display control means coupled to a User Controlled Data 

26 Processing System. 
27 

28 8. A means of defining a boundary perimeter to one at least display objects, wherein said boundary perimeter defines, 

29 in part at least, an area that penetrates one at least layers of overlying display objects. 
30 

31 9. The method of claim 8 wherein, said penetration is limited, by the number of layers of said overlying display 

32 objects. 
33 

34 10. The method of claim 8 wherein, said penetration is all of said overlying objects. 
35 

36 11. Hie method of claim 8 wherein, said penetration includes a component of translucency to overlying objects. 
37 

38 12. A method of advertising in the startup screen of a User Controlled Data Processing System that takes priority, in 

39 part at least, over information displayed under the control of the system operating system. 
40 

41 13. A method of advertising within the display area when a User Controlled Data Processing System has been 

42 inactive far a predetermined period of time. 



8NSDOCID: <WO 98S4672A1 j_> 



49 

SUBSTITUTE SHEET (RULE 26) 



WO 98/54672 



PCT/AU98/00403 



1 

2 14. The method of claim 13 when said advertising is coupled to secure means. 
3 

4 15. The method of Haim 13 wherein said advertising is terminated when said inactive becomes active within a 

5 predetermined period. 
6 

7 16. The method of riaim is wherein said advertising requires a password to terminate when said inactive to active 

8 exceeds and/or equals said predetermined period. 
9 

10 17. A method of interfacing a portable secure processing means owned and/or operated by a first means to a secure 

11 processing means owned and/or operated by a second means, wherein, 

12 said portable means receives input information from a keyboard means owned and/or operated by said first means. 

13 wherein said keyboard means is not an integral part of said portable means; and/or 

14 said portable means outputs display information to a display means owned and/or operated by said first means, 

15 wherein said display means is not an integral part of said portable means. 
16 

17 18. The method of claim 18 wherein said portable secure processing means is performing an electronic transfer of 

18 funds. 
19 
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Figure 1 
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Figure 2 



T 



Alternate Processing 

Means 

"¥ 







8 




t 


9 





10 



Video Logic 



Video RAM 



3 
Mux 



System CPU 



Monitor 



2/12 

SUBSTITUTE SHEET (RULE 26) 

BNSOOCID: <WO 9854672A1 J_> 



WO 98/54672 PCT/AU98/00403 



Figure 3 
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Figure 4 




BNSOOCID: <WO 9854e72A1_l_> 



4/12 

SUBSTITUTE SHEET (RULE 26) 



WO 98/54672 



PCT/AU98/00403 



Figure 5 
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202 Figure 6 
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